What the vulnerability does

01Description

A flaw was found in the way memory resources were freed in the unix_stream_recvmsg function in the Linux kernel when a signal was pending. This flaw allows an unprivileged local user to crash the system by exhausting available memory. The highest threat from this vulnerability is to system availability.

Key dates

02Disclosure timeline

March 10, 2021 CVE published
August 3, 2024 Record updated