CVE-2021-33909: exploitation status and patch state

CVE-2021-33909 · CVSS 7.8 HIGH · EPSS 10%

fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, leading to an integer overflow, an Out-of-bounds Write, and escalation to root by an unprivileged user, aka CID-8cae8cd89f05.

Is CVE-2021-33909 exploited?

Which products and versions are affected?

No affected package list recorded here yet.

Is there a patch?

No patch identifier recorded here yet.

What PlainSec published about CVE-2021-33909

Primary sources

What this record does not say

KEV and EPSS are re-checked daily. Record last updated 2026-08-15.