VDB

DEBIAN-CVE-2021-38300

DEBIAN-CVE-2021-38300 PUBLISHED CVSS 7.800000190734863 HIGH

arch/mips/net/bpf_jit.c in the Linux kernel before 5.4.10 can generate undesirable machine code when transforming unprivileged cBPF programs, allowing execution of arbitrary code within the kernel context. This occurs because conditional branches can exceed the 128 KB limit of the MIPS architecture.

Risk Scores

CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
Debian:11linux0, 5.10.46-4, 5.10.46-5
Debian:13linux0, 0, 0
Debian:12linux0, 0, 0
Debian:14linux0, 0, 0
Debianlinux

Timeline

  • Sep 20, 2021 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›