CVE-2021-4211
published 2022-04-22CVE-2021-4211: A potential vulnerability in the SMI callback function used in the SMBIOS event log driver in some Lenovo Desktop, ThinkStation, and ThinkEdge models may allow…
PriorityP430medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
EPSS
0.24%
15.6th percentile
A potential vulnerability in the SMI callback function used in the SMBIOS event log driver in some Lenovo Desktop, ThinkStation, and ThinkEdge models may allow an attacker with local access and elevated privileges to execute arbitrary code.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| lenovo | bios | — | — |
CVSS provenance
nvdv3.16.7MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2021-47310 kernel: net: ti: fix UAF in tlan_remove_one
bugzilla·2024-05-22·CVSS 7.8
CVE-2021-47310 [HIGH] CVE-2021-47310 kernel: net: ti: fix UAF in tlan_remove_one
CVE-2021-47310 kernel: net: ti: fix UAF in tlan_remove_one
In the Linux kernel, the following vulnerability has been resolved:
net: ti: fix UAF in tlan_remove_one
The Linux kernel CVE team has assigned CVE-2021-47310 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024052128-CVE-2021-47310-a59d@gregkh/T
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:4211 https://access.redhat.com/errata/RHSA-2024:4211
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:4352 https://access.redhat.com/errata/RHSA-2024:4352
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support
Re
Bugzilla
CVE-2021-47311 kernel: net: qcom/emac: fix UAF in emac_remove
bugzilla·2024-05-22·CVSS 7.8
CVE-2021-47311 [HIGH] CVE-2021-47311 kernel: net: qcom/emac: fix UAF in emac_remove
CVE-2021-47311 kernel: net: qcom/emac: fix UAF in emac_remove
In the Linux kernel, the following vulnerability has been resolved:
net: qcom/emac: fix UAF in emac_remove
The Linux kernel CVE team has assigned CVE-2021-47311 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024052129-CVE-2021-47311-47f4@gregkh/T
Discussion:
Hi Rohit, can we have kpatch trackers created for these releases:
rhel-8.6
rhel-8.8
rhel-8.10
(http://redbot.usersys.redhat.com/kpatch/kpatch-sla-kernels.json)
Thanks.
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:4211 https://access.redhat.com/errata/RHSA-2024:4211
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:4352 h
Bugzilla
CVE-2021-47353 kernel: udf: Fix NULL pointer dereference in udf_symlink function
bugzilla·2024-05-22·CVSS 5.5
CVE-2021-47353 [MEDIUM] CVE-2021-47353 kernel: udf: Fix NULL pointer dereference in udf_symlink function
CVE-2021-47353 kernel: udf: Fix NULL pointer dereference in udf_symlink function
In the Linux kernel, the following vulnerability has been resolved:
udf: Fix NULL pointer dereference in udf_symlink function
The Linux kernel CVE team has assigned CVE-2021-47353 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024052141-CVE-2021-47353-8d3a@gregkh/T
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:4211 https://access.redhat.com/errata/RHSA-2024:4211
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:4352 https://access.redhat.com/errata/RHSA-2024:4352
Bugzilla
CVE-2021-47356 kernel: mISDN: fix possible use-after-free in HFC_cleanup()
bugzilla·2024-05-22·CVSS 7.7
CVE-2021-47356 [HIGH] CVE-2021-47356 kernel: mISDN: fix possible use-after-free in HFC_cleanup()
CVE-2021-47356 kernel: mISDN: fix possible use-after-free in HFC_cleanup()
In the Linux kernel, the following vulnerability has been resolved:
mISDN: fix possible use-after-free in HFC_cleanup()
The Linux kernel CVE team has assigned CVE-2021-47356 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024052142-CVE-2021-47356-a3d4@gregkh/T
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:4211 https://access.redhat.com/errata/RHSA-2024:4211
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:4352 https://access.redhat.com/errata/RHSA-2024:4352
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8.6 Advanced Mi
Bugzilla
CVE-2021-47073 kernel: platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios
bugzilla·2024-03-03·CVSS 5.5
CVE-2021-47073 [MEDIUM] CVE-2021-47073 kernel: platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios
CVE-2021-47073 kernel: platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios
In the Linux kernel, the following vulnerability has been resolved:
platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios
The Linux kernel CVE team has assigned CVE-2021-47073 to this issue.
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024030142-CVE-2021-47073-704a@gregkh/T/#u
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 2267519]
---
This was fixed for Fedora with the 5.12.7 stable kernel updates.
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2024:4211 https://access.redhat.com/errata/RHSA-2024:4211
---
This issue has been addressed in the following products:
Red Hat Enterprise Li
2022-04-22
Published