An issue was discovered in the Linux kernel before 5.11.11. The netfilter subsystem allows attackers to cause a denial of service (panic) because net/netfilter/xtables.c and include/linux/netfilter/xtables.h lack a full memory barrier upon the assignment of a new table value, aka CID-175e476b8cdf.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-29650.json"
[
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"158479664952532688857792864336934085673",
"209339205680830568272816216218137821854",
"104528233649640731880035866039954157947",
"201434613710959153110545190444842736057"
]
},
"signature_type": "Line",
"deprecated": false,
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@175e476b8cdf2a4de7432583b49c871345e4f8a1",
"target": {
"file": "net/netfilter/x_tables.c"
},
"id": "CVE-2021-29650-6d2c5855"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"85498700152684412238248764542227337051",
"35224370379934452810793114576950824866",
"282126316143450929960712617907453267954",
"92022645204108446660675551070428465826"
]
},
"signature_type": "Line",
"deprecated": false,
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@175e476b8cdf2a4de7432583b49c871345e4f8a1",
"target": {
"file": "include/linux/netfilter/x_tables.h"
},
"id": "CVE-2021-29650-77a0ba5d"
}
]