cbcvebase.
CVE-2021-47184
published 2024-04-10

CVE-2021-47184: In the Linux kernel, the following vulnerability has been resolved: i40e: Fix NULL ptr dereference on VSI filter sync Remove the reason of null pointer…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.25%
16.1th percentile
In the Linux kernel, the following vulnerability has been resolved: i40e: Fix NULL ptr dereference on VSI filter sync Remove the reason of null pointer dereference in sync VSI filters. Added new I40E_VSI_RELEASING flag to signalize deleting and releasing of VSI resources to sync this thread with sync filters subtask. Without this patch it is possible to start update the VSI filter list after VSI is removed, that's causing a kernel oops.

Affected

18 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.15.5-1 (bookworm)linux 5.15.5-1 (bookworm)
linuxlinux
linuxlinux>= 41c445ff0f482bb6e6b72dcee9e598e20575f743 < 78f2a9e831f9610e3655a0be5e675e1aa247208978f2a9e831f9610e3655a0be5e675e1aa2472089
linuxlinux>= 41c445ff0f482bb6e6b72dcee9e598e20575f743 < 87c421ab4a43433cb009fea44bbbc77f46913e1d87c421ab4a43433cb009fea44bbbc77f46913e1d
linuxlinux>= 41c445ff0f482bb6e6b72dcee9e598e20575f743 < c30162da91327e4cdf7cd03079f096bb3654738cc30162da91327e4cdf7cd03079f096bb3654738c
linuxlinux>= 41c445ff0f482bb6e6b72dcee9e598e20575f743 < f866513ead4370402428ef724b03c3312295c178f866513ead4370402428ef724b03c3312295c178
linuxlinux>= 41c445ff0f482bb6e6b72dcee9e598e20575f743 < e91e8427a1e1633a0261e3bb0201c836ac5b3890e91e8427a1e1633a0261e3bb0201c836ac5b3890
linuxlinux>= 41c445ff0f482bb6e6b72dcee9e598e20575f743 < 37d9e304acd903a445df8208b8a13d707902dea637d9e304acd903a445df8208b8a13d707902dea6
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.84-15.10.84-1
linuxlinux_kernel>= 0 < 5.15.5-15.15.5-1
linuxlinux_kernel>= 0 < 5.15.5-15.15.5-1
linuxlinux_kernel>= 0 < 5.15.5-15.15.5-1
linuxlinux_kernel>= 3.12 < 4.14.2564.14.256
linuxlinux_kernel>= 4.15 < 4.19.2184.19.218
linuxlinux_kernel>= 4.20 < 5.4.1625.4.162
linuxlinux_kernel>= 5.11 < 5.15.55.15.5
linuxlinux_kernel>= 5.5 < 5.10.825.10.82

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.