cbcvebase.
CVE-2021-46950
published 2024-02-27

CVE-2021-46950: In the Linux kernel, the following vulnerability has been resolved: md/raid1: properly indicate failure when ending a failed write request This patch addresses…

PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.25%
16.2th percentile
In the Linux kernel, the following vulnerability has been resolved: md/raid1: properly indicate failure when ending a failed write request This patch addresses a data corruption bug in raid1 arrays using bitmaps. Without this fix, the bitmap bits for the failed I/O end up being cleared. Since we are in the failure leg of raid1_end_write_request, the request either needs to be retried (R1BIO_WriteError) or failed (R1BIO_Degraded).

Affected

26 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 5.10.38-1 (bookworm)linux 5.10.38-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux
linuxlinux>= 1cd972e0a10760a1fa27d9830d78446c891c23b6 < a6e17cab00fc5bf85472434c52ac751426257c6fa6e17cab00fc5bf85472434c52ac751426257c6f
linuxlinux>= 4.14.147 < 4.14.2334.14.233
linuxlinux>= 4.19.77 < 4.19.1914.19.191
linuxlinux>= 5.2.19 < 5.35.3
linuxlinux>= 5.3.4 < 5.45.4
linuxlinux>= 900c531899f5ee2321bef79e20055787bc73251d < 12216d0919b64ee2ea5dc7a50e455670f44383d512216d0919b64ee2ea5dc7a50e455670f44383d5
linuxlinux>= eeba6809d8d58908b5ed1b5ceb5fcb09a98a7cad < 6920cef604fa57f9409e3960413e9cc11f5c5a406920cef604fa57f9409e3960413e9cc11f5c5a40
linuxlinux>= eeba6809d8d58908b5ed1b5ceb5fcb09a98a7cad < 661061a45e32d8b2cc0e306da9f169ad44011382661061a45e32d8b2cc0e306da9f169ad44011382
linuxlinux>= eeba6809d8d58908b5ed1b5ceb5fcb09a98a7cad < 59452e551784b7a57a45d971727e9db63b19251559452e551784b7a57a45d971727e9db63b192515
linuxlinux>= eeba6809d8d58908b5ed1b5ceb5fcb09a98a7cad < 538244fba59fde17186322776247cd9c05be86dd538244fba59fde17186322776247cd9c05be86dd
linuxlinux>= eeba6809d8d58908b5ed1b5ceb5fcb09a98a7cad < 2417b9869b81882ab90fd5ed1081a1cb2d4db1dd2417b9869b81882ab90fd5ed1081a1cb2d4db1dd
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 4.14.147 < 4.14.2334.14.233
linuxlinux_kernel>= 4.19.77 < 4.19.1914.19.191
linuxlinux_kernel>= 5.11 < 5.11.205.11.20
linuxlinux_kernel>= 5.12 < 5.12.35.12.3
linuxlinux_kernel>= 5.2.19 < 5.35.3
linuxlinux_kernel>= 5.3.4 < 5.4.1185.4.118

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.