CVE-2021-22555

high KEV
Published 2025-10-06 · Modified 2021-08-11
CVSS v3
CVSS v2
VIR risk
9.5

Description

Important: kernel security, bug fix, and enhancement update

CISA KEV

Vendor
Linux
Product
Kernel
Due date
2025-10-27

Predictions

Exploit likelihood
99%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: alma — https://errata.almalinux.org/8/ALSA-2021-3057.html

vendor Authored 2026-05-27

Vendor advisory: cisa-kev — https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/net/netfilter/x_tables.c?id=9fa492cdc160cd27ce1046cb36f47d3b2b1efa21 ; https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/net/netfilter/x_tables.c?id=b29c457a6511435960115c0f548c4360d5f4801d ; https://security.netapp.com/advisory/ntap-20210805-0010/ ; https://github.com/google/security-research/security/advisories/GHSA-xxx5-8mvq-3528 ; https://nvd.nist.gov/vuln/detail/CVE-2021-22555

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2021-22555

vendor Authored 2026-05-27

Vendor advisory: rocky — https://errata.rockylinux.org/RLSA-2021:3057

vendor Authored 2026-05-27

Vendor advisory: rocky — https://errata.rockylinux.org/RLSA-2021:3088

vendor Authored 2026-05-27

Vendor advisory: suse — https://www.suse.com/security/cve/CVE-2021-22555.html

Exploits

OS impact

OSVersionStatusFixed in
arch archfixed5.10.31-1
suse slesaffected
rockylinux rocky8fixed
debian debianbookwormfixed5.10.38-1
debian debianbullseyefixed5.10.38-1
debian debianforkyfixed5.10.38-1
debian debiansidfixed5.10.38-1
debian debiantrixiefixed5.10.38-1

References

Verify integrity in audit chain (admin only). AS-IS.