vulnerability

VMware Photon OS: CVE-2021-4090

Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:N)
Published
Feb 18, 2022
Added
Sep 29, 2025
Modified
Feb 9, 2026

Description

An out-of-bounds (OOB) memory write flaw was found in the NFSD in the Linux kernel. Missing sanity may lead to a write beyond bmval[bmlen-1] in nfsd4_decode_bitmap4 in fs/nfsd/nfs4xdr.c. In this flaw, a local attacker with user privilege may gain access to out-of-bounds memory, leading to a system integrity and confidentiality threat.

Solution

vmware-photon_os_update_tdnf
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.