CVE-2021-4155: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.
A data leak flaw was found in the way XFS_IOC_ALLOCSP IOCTL in the XFS filesystem allowed for size increase of files with unaligned size. A local attacker could use this flaw to leak data on the XFS filesystem otherwise not accessible to them.
Affected products
- Linux Linux Kernel: before 5.16 (fixed in 5.16)
Published 2022-08-24. Last modified 2026-06-17.