#VU63583 Improper Resource Shutdown or Release in Linux kernel - CVE-2021-28714
Published: May 24, 2022
Linux kernel
Linux Foundation
Description
The vulnerability allows a remote user to perform a denial of service (DoS) attack.
The vulnerability exists due to incoming data packets for a guest in the Linux kernel's netback driver are buffered until the guest is ready to process them. A remote user can use a UDP connection on a fast interface to trigger resource exhaustion and perform a denial of service (DoS) attack.