AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2021-4095

MEDIUM · CVSS 5.5 EPSS 0.39%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-03-10 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2021-4095
Severity
MEDIUM
CVSS
5.5
EPSS
0.39%
Linux

Original NVD Description

A NULL pointer dereference was found in the Linux kernel's KVM when dirty ring logging is enabled without an active vCPU context. An unprivileged local attacker on the host may use this flaw to cause a kernel oops condition and thus a denial of service by issuing a KVM_XEN_HVM_SET_ATTR ioctl. This flaw affects Linux kernel versions prior to 5.17-rc1.