Linux kernel netfilter heap out-of-bounds write vulnerability allowing privilege escalation and DoS. Requires adjacent network access and high attack complexity. Despite high deployment, this is primarily a privilege escalation vulnerability requiring existing local or adjacent network access.
Data Source: CIRCL
Confidence: HIGH
Exploitation Method: OTHER
CVE Published: 2021-07-07
Added to CISA KEV: 2025-10-06 1552 DAYS BETWEEN CVE AND KEV
CVE-2021-22555 is a significant security vulnerability involving a heap out-of-bounds write in the Linux kernel's `net/netfilter/x_tables.c` component [1]. It has been recognized as a vulnerability that was routinely exploited by malicious cyber actors in 2021 [2].
A heap out-of-bounds write affecting Linux since v2.6.19-rc1 was discovered in net/netfilter/x_tables.c. This allows an attacker to gain privileges or cause a ...
This advisory provides details on the top 15 Common Vulnerabilities and Exposures (CVEs) routinely exploited by malicious cyber actors in 2021, as well as ...
Secure .gov websites use HTTPS A lock () or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites. ... CISA-ADP: https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-22555 Types: US Government Resource.Refβ¦
Oct 12, 2023 at 3:58 PM Threat Intelligence Report A critical security vulnerability, CVE-2021-22555, has been discovered in GKE clusters and GKE on VMware running Linux version 2.6.19 or later. This vulnerability allows a malicious actor with privileges to potentially execute a container breakout tβ¦