cbcvebase.
CVE-2021-46909
published 2024-02-27

CVE-2021-46909: In the Linux kernel, the following vulnerability has been resolved: ARM: footbridge: fix PCI interrupt mapping Since commit 30fdfb929e82 ("PCI: Add a call to…

PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
15.3th percentile
In the Linux kernel, the following vulnerability has been resolved: ARM: footbridge: fix PCI interrupt mapping Since commit 30fdfb929e82 ("PCI: Add a call to pci_assign_irq() in pci_device_probe()"), the PCI code will call the IRQ mapping function whenever a PCI driver is probed. If these are marked as __init, this causes an oops if a PCI driver is loaded or bound after the kernel has initialised.

Affected

17 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.10.38-1 (bookworm)linux 5.10.38-1 (bookworm)
linuxlinux
linuxlinux>= 30fdfb929e82450bbf3d0e0aba56efbc29b52b52 < 532747fd5c7aaa17ee5cf79f3e947c31eb0e35cf532747fd5c7aaa17ee5cf79f3e947c31eb0e35cf
linuxlinux>= 30fdfb929e82450bbf3d0e0aba56efbc29b52b52 < 2643da6aa57920d9159a1a579fb04f89a2b0d29a2643da6aa57920d9159a1a579fb04f89a2b0d29a
linuxlinux>= 30fdfb929e82450bbf3d0e0aba56efbc29b52b52 < 871b569a3e67f570df9f5ba195444dc7c621293b871b569a3e67f570df9f5ba195444dc7c621293b
linuxlinux>= 30fdfb929e82450bbf3d0e0aba56efbc29b52b52 < 1fc087fdb98d556b416c82ed6e3964a30885f47a1fc087fdb98d556b416c82ed6e3964a30885f47a
linuxlinux>= 30fdfb929e82450bbf3d0e0aba56efbc29b52b52 < c3efce8cc9807339633ee30e39882f4c8626ee1dc3efce8cc9807339633ee30e39882f4c8626ee1d
linuxlinux>= 30fdfb929e82450bbf3d0e0aba56efbc29b52b52 < 30e3b4f256b4e366a61658c294f6a21b8626dda730e3b4f256b4e366a61658c294f6a21b8626dda7
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 4.13.0 < 4.14.2324.14.232
linuxlinux_kernel>= 4.15.0 < 4.19.1894.19.189
linuxlinux_kernel>= 4.20.0 < 5.4.1145.4.114
linuxlinux_kernel>= 5.11.0 < 5.11.165.11.16
linuxlinux_kernel>= 5.5.0 < 5.10.325.10.32

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.