CVE-2021-47018
published 2024-02-28CVE-2021-47018: In the Linux kernel, the following vulnerability has been resolved: powerpc/64: Fix the definition of the fixmap area At the time being, the fixmap area is…
PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
14.9th percentile
In the Linux kernel, the following vulnerability has been resolved:
powerpc/64: Fix the definition of the fixmap area
At the time being, the fixmap area is defined at the top of
the address space or just below KASAN.
This definition is not valid for PPC64.
For PPC64, use the top of the I/O space.
Because of circular dependencies, it is not possible to include
asm/fixmap.h in asm/book3s/64/pgtable.h , so define a fixed size
AREA at the top of the I/O space for fixmap and ensure during
build that the size is big enough.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.10.38-1 (bookworm) | linux 5.10.38-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 265c3491c4bc8d40587996d6ee2f447a7ccfb4f3 < 4b9fb2c9039a206d37f215936a4d5bee7b1bf9cd | 4b9fb2c9039a206d37f215936a4d5bee7b1bf9cd |
| linux | linux | >= 265c3491c4bc8d40587996d6ee2f447a7ccfb4f3 < abb07dc5e8b61ab7b1dde20dd73aa01a3aeb183f | abb07dc5e8b61ab7b1dde20dd73aa01a3aeb183f |
| linux | linux | >= 265c3491c4bc8d40587996d6ee2f447a7ccfb4f3 < a84df7c80bdac598d6ac9268ae578da6928883e8 | a84df7c80bdac598d6ac9268ae578da6928883e8 |
| linux | linux | >= 265c3491c4bc8d40587996d6ee2f447a7ccfb4f3 < 9ccba66d4d2aff9a3909aa77d57ea8b7cc166f3c | 9ccba66d4d2aff9a3909aa77d57ea8b7cc166f3c |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 5.11 < 5.11.21 | 5.11.21 |
| linux | linux_kernel | >= 5.12 < 5.12.4 | 5.12.4 |
| linux | linux_kernel | >= 5.5 < 5.10.37 | 5.10.37 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: ensure definition of the fixmap area is in a limit
vendor_redhat·2024-02-28·CVSS 5.5
CVE-2021-47018 [MEDIUM] CWE-20 kernel: ensure definition of the fixmap area is in a limit
kernel: ensure definition of the fixmap area is in a limit
In the Linux kernel, the following vulnerability has been resolved:
powerpc/64: Fix the definition of the fixmap area
At the time being, the fixmap area is defined at the top of
the address space or just below KASAN.
This definition is not valid for PPC64.
For PPC64, use the top of the I/O space.
Because of circular dependencies, it is not possible to include
asm/fixmap.h in asm/book3s/64/pgtable.h , so define a fixed size
AREA at the top of the I/O space for fixmap and ensure during
build that the size is big enough.
A flaw was found in the Linux kernel. The fixmap area that was defined for the PPC64 architecture was invalid.
Mitigation: Mitigation for this issue is either not available or the currently available options do not
Debian
CVE-2021-47018: linux - In the Linux kernel, the following vulnerability has been resolved: powerpc/64:...
vendor_debian·2021·CVSS 5.5
CVE-2021-47018 [MEDIUM] CVE-2021-47018: linux - In the Linux kernel, the following vulnerability has been resolved: powerpc/64:...
In the Linux kernel, the following vulnerability has been resolved: powerpc/64: Fix the definition of the fixmap area At the time being, the fixmap area is defined at the top of the address space or just below KASAN. This definition is not valid for PPC64. For PPC64, use the top of the I/O space. Because of circular dependencies, it is not possible to include asm/fixmap.h in asm/book3s/64/pgtable.h , so define a fixed size AREA at the top of the I/O space for fixmap and ensure during build that the size is big enough.
Scope: local
bookworm: resolved (fixed in 5.10.38-1)
bullseye: resolved (fixed in 5.10.38-1)
forky: resolved (fixed in 5.10.38-1)
sid: resolved (fixed in 5.10.38-1)
trixie: resolved (fixed in 5.10.38-1)
GHSA
GHSA-p768-cw2x-34vr: In the Linux kernel, the following vulnerability has been resolved:
powerpc/64: Fix the definition of the fixmap area
At the time being, the fixmap
ghsa_unreviewed·2024-02-28
CVE-2021-47018 [MEDIUM] GHSA-p768-cw2x-34vr: In the Linux kernel, the following vulnerability has been resolved:
powerpc/64: Fix the definition of the fixmap area
At the time being, the fixmap
In the Linux kernel, the following vulnerability has been resolved:
powerpc/64: Fix the definition of the fixmap area
At the time being, the fixmap area is defined at the top of
the address space or just below KASAN.
This definition is not valid for PPC64.
For PPC64, use the top of the I/O space.
Because of circular dependencies, it is not possible to include
asm/fixmap.h in asm/book3s/64/pgtable.h , so define a fixed size
AREA at the top of the I/O space for fixmap and ensure during
build that the size is big enough.
OSV
CVE-2021-47018: In the Linux kernel, the following vulnerability has been resolved: powerpc/64: Fix the definition of the fixmap area At the time being, the fixmap ar
osv·2024-02-28·CVSS 5.5
CVE-2021-47018 [MEDIUM] CVE-2021-47018: In the Linux kernel, the following vulnerability has been resolved: powerpc/64: Fix the definition of the fixmap area At the time being, the fixmap ar
In the Linux kernel, the following vulnerability has been resolved: powerpc/64: Fix the definition of the fixmap area At the time being, the fixmap area is defined at the top of the address space or just below KASAN. This definition is not valid for PPC64. For PPC64, use the top of the I/O space. Because of circular dependencies, it is not possible to include asm/fixmap.h in asm/book3s/64/pgtable.h , so define a fixed size AREA at the top of the I/O space for fixmap and ensure during build that the size is big enough.
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/4b9fb2c9039a206d37f215936a4d5bee7b1bf9cdhttps://git.kernel.org/stable/c/9ccba66d4d2aff9a3909aa77d57ea8b7cc166f3chttps://git.kernel.org/stable/c/a84df7c80bdac598d6ac9268ae578da6928883e8https://git.kernel.org/stable/c/abb07dc5e8b61ab7b1dde20dd73aa01a3aeb183fhttps://git.kernel.org/stable/c/4b9fb2c9039a206d37f215936a4d5bee7b1bf9cdhttps://git.kernel.org/stable/c/9ccba66d4d2aff9a3909aa77d57ea8b7cc166f3chttps://git.kernel.org/stable/c/a84df7c80bdac598d6ac9268ae578da6928883e8https://git.kernel.org/stable/c/abb07dc5e8b61ab7b1dde20dd73aa01a3aeb183f
2024-02-28
Published