CVE-2021-47064
published 2024-02-29CVE-2021-47064: In the Linux kernel, the following vulnerability has been resolved: mt76: fix potential DMA mapping leak With buf uninitialized in mt76_dma_tx_queue_skb_raw…
PriorityP425medium5.3CVSS 3.1
AVNACLPRNUINSUCNINAL
EPSS
0.77%
52.0th percentile
In the Linux kernel, the following vulnerability has been resolved:
mt76: fix potential DMA mapping leak
With buf uninitialized in mt76_dma_tx_queue_skb_raw, its field skip_unmap
could potentially inherit a non-zero value from stack garbage.
If this happens, it will cause DMA mappings for MCU command frames to not be
unmapped after completion
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.10.38-1 (bookworm) | linux 5.10.38-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 27d5c528a7ca08dcd44877fdd9fc08b76630bf77 < 9fa26701cd1fc4d932d431971efc5746325bdfce | 9fa26701cd1fc4d932d431971efc5746325bdfce |
| linux | linux | >= 27d5c528a7ca08dcd44877fdd9fc08b76630bf77 < 9b68ce2856dadc0e1cb6fd21fbeb850da49efd08 | 9b68ce2856dadc0e1cb6fd21fbeb850da49efd08 |
| linux | linux | >= 27d5c528a7ca08dcd44877fdd9fc08b76630bf77 < 91b9548d413fda488ea853cd1b9f59b572db3a0c | 91b9548d413fda488ea853cd1b9f59b572db3a0c |
| linux | linux | >= 27d5c528a7ca08dcd44877fdd9fc08b76630bf77 < b4403cee6400c5f679e9c4a82b91d61aa961eccf | b4403cee6400c5f679e9c4a82b91d61aa961eccf |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 5.10 < 5.10.37 | 5.10.37 |
| linux | linux_kernel | >= 5.11 < 5.11.21 | 5.11.21 |
| linux | linux_kernel | >= 5.12 < 5.12.4 | 5.12.4 |
CVSS provenance
nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
osv5.3MEDIUM
vendor_debian5.3MEDIUM
vendor_redhat5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vv74-wh7g-52xw: In the Linux kernel, the following vulnerability has been resolved:
mt76: fix potential DMA mapping leak
With buf uninitialized in mt76_dma_tx_queue
ghsa_unreviewed·2024-03-01
CVE-2021-47064 [MEDIUM] CWE-401 GHSA-vv74-wh7g-52xw: In the Linux kernel, the following vulnerability has been resolved:
mt76: fix potential DMA mapping leak
With buf uninitialized in mt76_dma_tx_queue
In the Linux kernel, the following vulnerability has been resolved:
mt76: fix potential DMA mapping leak
With buf uninitialized in mt76_dma_tx_queue_skb_raw, its field skip_unmap
could potentially inherit a non-zero value from stack garbage.
If this happens, it will cause DMA mappings for MCU command frames to not be
unmapped after completion
OSV
CVE-2021-47064: In the Linux kernel, the following vulnerability has been resolved: mt76: fix potential DMA mapping leak With buf uninitialized in mt76_dma_tx_queue_s
osv·2024-02-29·CVSS 5.3
CVE-2021-47064 [MEDIUM] CVE-2021-47064: In the Linux kernel, the following vulnerability has been resolved: mt76: fix potential DMA mapping leak With buf uninitialized in mt76_dma_tx_queue_s
In the Linux kernel, the following vulnerability has been resolved: mt76: fix potential DMA mapping leak With buf uninitialized in mt76_dma_tx_queue_skb_raw, its field skip_unmap could potentially inherit a non-zero value from stack garbage. If this happens, it will cause DMA mappings for MCU command frames to not be unmapped after completion
Red Hat
kernel: mt76: fix potential DMA mapping leak
vendor_redhat·2024-02-29·CVSS 5.3
CVE-2021-47064 [MEDIUM] CWE-402 kernel: mt76: fix potential DMA mapping leak
kernel: mt76: fix potential DMA mapping leak
In the Linux kernel, the following vulnerability has been resolved:
mt76: fix potential DMA mapping leak
With buf uninitialized in mt76_dma_tx_queue_skb_raw, its field skip_unmap
could potentially inherit a non-zero value from stack garbage.
If this happens, it will cause DMA mappings for MCU command frames to not be
unmapped after completion
Package: kernel (Red Hat Enterprise Linux 6) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel-rt (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterprise Linux 9) - Not affected
Package: ker
Debian
CVE-2021-47064: linux - In the Linux kernel, the following vulnerability has been resolved: mt76: fix p...
vendor_debian·2021·CVSS 5.3
CVE-2021-47064 [MEDIUM] CVE-2021-47064: linux - In the Linux kernel, the following vulnerability has been resolved: mt76: fix p...
In the Linux kernel, the following vulnerability has been resolved: mt76: fix potential DMA mapping leak With buf uninitialized in mt76_dma_tx_queue_skb_raw, its field skip_unmap could potentially inherit a non-zero value from stack garbage. If this happens, it will cause DMA mappings for MCU command frames to not be unmapped after completion
Scope: local
bookworm: resolved (fixed in 5.10.38-1)
bullseye: resolved (fixed in 5.10.38-1)
forky: resolved (fixed in 5.10.38-1)
sid: resolved (fixed in 5.10.38-1)
trixie: resolved (fixed in 5.10.38-1)
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/91b9548d413fda488ea853cd1b9f59b572db3a0chttps://git.kernel.org/stable/c/9b68ce2856dadc0e1cb6fd21fbeb850da49efd08https://git.kernel.org/stable/c/9fa26701cd1fc4d932d431971efc5746325bdfcehttps://git.kernel.org/stable/c/b4403cee6400c5f679e9c4a82b91d61aa961eccfhttps://git.kernel.org/stable/c/91b9548d413fda488ea853cd1b9f59b572db3a0chttps://git.kernel.org/stable/c/9b68ce2856dadc0e1cb6fd21fbeb850da49efd08https://git.kernel.org/stable/c/9fa26701cd1fc4d932d431971efc5746325bdfcehttps://git.kernel.org/stable/c/b4403cee6400c5f679e9c4a82b91d61aa961eccf
2024-02-29
Published