cbcvebase.
CVE-2021-46949
published 2024-02-27

CVE-2021-46949: In the Linux kernel, the following vulnerability has been resolved: sfc: farch: fix TX queue lookup in TX flush done handling We're starting from a TXQ…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
12.9th percentile
In the Linux kernel, the following vulnerability has been resolved: sfc: farch: fix TX queue lookup in TX flush done handling We're starting from a TXQ instance number ('qid'), not a TXQ type, so efx_get_tx_queue() is inappropriate (and could return NULL, leading to panics).

Affected

13 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.10.38-1 (bookworm)linux 5.10.38-1 (bookworm)
linuxlinux
linuxlinux>= 12804793b17c0e19115a90d98f2f3df0cb79e233 < fb791572d6747ef385f628450f8d57cd132e6e5afb791572d6747ef385f628450f8d57cd132e6e5a
linuxlinux>= 12804793b17c0e19115a90d98f2f3df0cb79e233 < a1570985ec04116cc665b760faf666a104154170a1570985ec04116cc665b760faf666a104154170
linuxlinux>= 12804793b17c0e19115a90d98f2f3df0cb79e233 < 98d91180748986bfb6dfb3e72765f3225719a64798d91180748986bfb6dfb3e72765f3225719a647
linuxlinux>= 12804793b17c0e19115a90d98f2f3df0cb79e233 < 5b1faa92289b53cad654123ed2bc8e10f6ddd4ac5b1faa92289b53cad654123ed2bc8e10f6ddd4ac
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 5.10.0 < 5.10.365.10.36
linuxlinux_kernel>= 5.11.0 < 5.11.205.11.20
linuxlinux_kernel>= 5.12.0 < 5.12.35.12.3

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.