vulnerability

Ubuntu: (Multiple Advisories) (CVE-2021-20292): Linux kernel vulnerabilities

Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
Published
May 11, 2021
Added
May 12, 2021
Modified
Aug 18, 2025

Description

There is a flaw reported in the Linux kernel in versions before 5.9 in drivers/gpu/drm/nouveau/nouveau_sgdma.c in nouveau_sgdma_create_ttm in Nouveau DRM subsystem. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker with a local account with a root privilege, can leverage this vulnerability to escalate privileges and execute code in the context of the kernel.

Solutions

ubuntu-upgrade-linux-image-4-15-0-1018-dell300xubuntu-upgrade-linux-image-4-15-0-1071-oracleubuntu-upgrade-linux-image-4-15-0-1085-raspi2ubuntu-upgrade-linux-image-4-15-0-1091-kvmubuntu-upgrade-linux-image-4-15-0-1099-gcpubuntu-upgrade-linux-image-4-15-0-1102-awsubuntu-upgrade-linux-image-4-15-0-1102-snapdragonubuntu-upgrade-linux-image-4-15-0-1114-azureubuntu-upgrade-linux-image-4-15-0-143-genericubuntu-upgrade-linux-image-4-15-0-143-generic-lpaeubuntu-upgrade-linux-image-4-15-0-143-lowlatencyubuntu-upgrade-linux-image-4-4-0-1102-awsubuntu-upgrade-linux-image-4-4-0-1103-kvmubuntu-upgrade-linux-image-4-4-0-1138-awsubuntu-upgrade-linux-image-4-4-0-222-genericubuntu-upgrade-linux-image-4-4-0-222-lowlatencyubuntu-upgrade-linux-image-awsubuntu-upgrade-linux-image-aws-hweubuntu-upgrade-linux-image-aws-lts-18-04ubuntu-upgrade-linux-image-azureubuntu-upgrade-linux-image-azure-lts-18-04ubuntu-upgrade-linux-image-dell300xubuntu-upgrade-linux-image-gcpubuntu-upgrade-linux-image-gcp-lts-18-04ubuntu-upgrade-linux-image-genericubuntu-upgrade-linux-image-generic-hwe-16-04ubuntu-upgrade-linux-image-generic-lpaeubuntu-upgrade-linux-image-generic-lts-xenialubuntu-upgrade-linux-image-gkeubuntu-upgrade-linux-image-kvmubuntu-upgrade-linux-image-lowlatencyubuntu-upgrade-linux-image-lowlatency-hwe-16-04ubuntu-upgrade-linux-image-lowlatency-lts-xenialubuntu-upgrade-linux-image-oemubuntu-upgrade-linux-image-oracleubuntu-upgrade-linux-image-oracle-lts-18-04ubuntu-upgrade-linux-image-raspi2ubuntu-upgrade-linux-image-snapdragonubuntu-upgrade-linux-image-virtualubuntu-upgrade-linux-image-virtual-hwe-16-04ubuntu-upgrade-linux-image-virtual-lts-xenial

References

    Title
    NEW

    Explore Exposure Command

    Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.