The Security Team discovered an integer overflow bug that allows an attacker with code execution to issue memory cache invalidation operations on pages that they don’t own, allowing them to control kernel memory from userspace. We recommend upgrading to kernel version 4.1 or beyond.
History

Mon, 21 Apr 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Google

Published:

Updated: 2025-04-21T13:54:07.544Z

Reserved: 2021-01-05T00:00:00.000Z

Link: CVE-2021-22556

cve-icon Vulnrichment

Updated: 2024-08-03T18:44:13.719Z

cve-icon NVD

Status : Modified

Published: 2022-05-03T16:15:18.627

Modified: 2024-11-21T05:50:19.533

Link: CVE-2021-22556

cve-icon Redhat

No data.