cbcvebase.
CVE-2021-47204
published 2024-04-10

CVE-2021-47204: In the Linux kernel, the following vulnerability has been resolved: net: dpaa2-eth: fix use-after-free in dpaa2_eth_remove Access to netdev after free_netdev()…

PriorityP337high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.23%
13.6th percentile
In the Linux kernel, the following vulnerability has been resolved: net: dpaa2-eth: fix use-after-free in dpaa2_eth_remove Access to netdev after free_netdev() will cause use-after-free bug. Move debug log before free_netdev() call to avoid it.

Affected

14 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.15.5-1 (bookworm)linux 5.15.5-1 (bookworm)
linuxlinux
linuxlinux>= 7472dd9f649958be6a8880ed439233c8414a7b34 < d74ff10ed2d93dc9b67e99a74b36fb9a83273d8ad74ff10ed2d93dc9b67e99a74b36fb9a83273d8a
linuxlinux>= 7472dd9f649958be6a8880ed439233c8414a7b34 < 1c4099dc0d6a01e76e4f7dd98e4b3e0d55d80ad91c4099dc0d6a01e76e4f7dd98e4b3e0d55d80ad9
linuxlinux>= 7472dd9f649958be6a8880ed439233c8414a7b34 < 32d4686224744819ddcae58b666c21d2a4ef4c8832d4686224744819ddcae58b666c21d2a4ef4c88
linuxlinux>= 7472dd9f649958be6a8880ed439233c8414a7b34 < 9b5a333272a48c2f8b30add7a874e46e8b26129c9b5a333272a48c2f8b30add7a874e46e8b26129c
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.84-15.10.84-1
linuxlinux_kernel>= 0 < 5.15.5-15.15.5-1
linuxlinux_kernel>= 0 < 5.15.5-15.15.5-1
linuxlinux_kernel>= 0 < 5.15.5-15.15.5-1
linuxlinux_kernel>= 4.17 < 5.4.1625.4.162
linuxlinux_kernel>= 5.11 < 5.15.55.15.5
linuxlinux_kernel>= 5.5 < 5.10.825.10.82

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.