cbcvebase.
CVE-2021-47064
published 2024-02-29

CVE-2021-47064: In the Linux kernel, the following vulnerability has been resolved: mt76: fix potential DMA mapping leak With buf uninitialized in mt76_dma_tx_queue_skb_raw…

PriorityP425medium5.3CVSS 3.1
AVNACLPRNUINSUCNINAL
EPSS
0.77%
52.0th percentile
In the Linux kernel, the following vulnerability has been resolved: mt76: fix potential DMA mapping leak With buf uninitialized in mt76_dma_tx_queue_skb_raw, its field skip_unmap could potentially inherit a non-zero value from stack garbage. If this happens, it will cause DMA mappings for MCU command frames to not be unmapped after completion

Affected

13 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.10.38-1 (bookworm)linux 5.10.38-1 (bookworm)
linuxlinux
linuxlinux>= 27d5c528a7ca08dcd44877fdd9fc08b76630bf77 < 9fa26701cd1fc4d932d431971efc5746325bdfce9fa26701cd1fc4d932d431971efc5746325bdfce
linuxlinux>= 27d5c528a7ca08dcd44877fdd9fc08b76630bf77 < 9b68ce2856dadc0e1cb6fd21fbeb850da49efd089b68ce2856dadc0e1cb6fd21fbeb850da49efd08
linuxlinux>= 27d5c528a7ca08dcd44877fdd9fc08b76630bf77 < 91b9548d413fda488ea853cd1b9f59b572db3a0c91b9548d413fda488ea853cd1b9f59b572db3a0c
linuxlinux>= 27d5c528a7ca08dcd44877fdd9fc08b76630bf77 < b4403cee6400c5f679e9c4a82b91d61aa961eccfb4403cee6400c5f679e9c4a82b91d61aa961eccf
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 0 < 5.10.38-15.10.38-1
linuxlinux_kernel>= 5.10 < 5.10.375.10.37
linuxlinux_kernel>= 5.11 < 5.11.215.11.21
linuxlinux_kernel>= 5.12 < 5.12.45.12.4

CVSS provenance

nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
osv5.3MEDIUM
vendor_debian5.3MEDIUM
vendor_redhat5.3MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.