cbcvebase.
CVE-2021-47153
published 2024-03-25

CVE-2021-47153: In the Linux kernel, the following vulnerability has been resolved: i2c: i801: Don't generate an interrupt on bus reset Now that the i2c-i801 driver supports…

PriorityP429high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.23%
14.0th percentile
In the Linux kernel, the following vulnerability has been resolved: i2c: i801: Don't generate an interrupt on bus reset Now that the i2c-i801 driver supports interrupts, setting the KILL bit in a attempt to recover from a timed out transaction triggers an interrupt. Unfortunately, the interrupt handler (i801_isr) is not prepared for this situation and will try to process the interrupt as if it was signaling the end of a successful transaction. In the case of a block transaction, this can result in an out-of-range memory access. This condition was reproduced several times by syzbot: https://syzkaller.appspot.com/bug?extid=ed71512d469895b5b34e https://syzkaller.appspot.com/bug?extid=8c8dedc0ba9e03f6c79e https://syzkaller.appspot.com/bug?extid=c8ff0b6d6c73d81b610e https://syzkaller.appspot.com/bug?extid=33f6c360821c399d69eb https://syzkaller.appspot.com/bug?extid=be15dc0b1933f04b043a https://syzkaller.appspot.com/bug?extid=b4d3fd1dfd53e90afd79 So disable interrupts while trying to reset the bus. Interrupts will be enabled again for the following transaction.

Affected

24 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.14.6-1 (bookworm)linux 5.14.6-1 (bookworm)
linuxlinux
linuxlinux>= 636752bcb5177a301d0266270661581de8624828 < f9469082126cebb7337db3992d143f5e4edfe629f9469082126cebb7337db3992d143f5e4edfe629
linuxlinux>= 636752bcb5177a301d0266270661581de8624828 < 09c9e79f4c10cfb6b9e0e1b4dd355232e4b5a3b309c9e79f4c10cfb6b9e0e1b4dd355232e4b5a3b3
linuxlinux>= 636752bcb5177a301d0266270661581de8624828 < dfa8929e117b0228a7765f5c3f5988a4a028f3c6dfa8929e117b0228a7765f5c3f5988a4a028f3c6
linuxlinux>= 636752bcb5177a301d0266270661581de8624828 < c70e1ba2e7e65255a0ce004f531dd90dada97a8cc70e1ba2e7e65255a0ce004f531dd90dada97a8c
linuxlinux>= 636752bcb5177a301d0266270661581de8624828 < 04cc05e3716ae31b17ecdab7bc55c8170def1b8b04cc05e3716ae31b17ecdab7bc55c8170def1b8b
linuxlinux>= 636752bcb5177a301d0266270661581de8624828 < b523feb7e8e44652f92f3babb953a976e7ccbbefb523feb7e8e44652f92f3babb953a976e7ccbbef
linuxlinux>= 636752bcb5177a301d0266270661581de8624828 < 1f583d3813f204449037cd2acbfc09168171362a1f583d3813f204449037cd2acbfc09168171362a
linuxlinux>= 636752bcb5177a301d0266270661581de8624828 < e4d8716c3dcec47f1557024add24e1f3c09eb24be4d8716c3dcec47f1557024add24e1f3c09eb24b
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 3.6 < 4.4.2714.4.271
linuxlinux_kernel>= 4.10 < 4.14.2354.14.235
linuxlinux_kernel>= 4.15 < 4.19.1934.19.193
linuxlinux_kernel>= 4.20 < 5.4.1245.4.124
linuxlinux_kernel>= 4.5 < 4.9.2714.9.271
linuxlinux_kernel>= 5.11 < 5.12.95.12.9
linuxlinux_kernel>= 5.5 < 5.10.425.10.42

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.