CVE-2021-3669

MEDIUM

Linux Kernel - Denial of Service via Shared Memory Segment Count Exhaustion

Title source: llm
STIX 2.1

Description

A flaw was found in the Linux kernel. Measuring usage of the shared memory does not scale with large shared memory segment counts which could lead to resource exhaustion and DoS.

References (5)

Core 5
Core References
Issue Tracking, Permissions Required x_refsource_misc
https://bugzilla.redhat.com/show_bug.cgi?id=1986473
Issue Tracking, Third Party Advisory x_refsource_misc
https://bugzilla.redhat.com/show_bug.cgi?id=1980619
Issue Tracking, Third Party Advisory x_refsource_misc
https://access.redhat.com/security/cve/CVE-2021-3669
Issue Tracking, Third Party Advisory x_refsource_misc
https://security-tracker.debian.org/tracker/CVE-2021-3669

Scores

CVSS v3 5.5
EPSS 0.0001
EPSS Percentile 3.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-770 CWE-400
Status published
Products (28)
debian/debian_linux 10.0
debian/debian_linux 11.0
fedoraproject/fedora 34
ibm/spectrum_copy_data_management 2.2.0.0 - 2.2.15.0
ibm/spectrum_protect_plus 10.1.0 - 10.1.10.2
linux/linux_kernel
redhat/build_of_quarkus 2.0 - 2.7
redhat/codeready_linux_builder
redhat/developer_tools 1.0
redhat/enterprise_linux 6.0
... and 18 more
Published Aug 26, 2022
Tracked Since Feb 18, 2026