cbcvebase.
CVE-2021-47263
published 2024-05-21

CVE-2021-47263: In the Linux kernel, the following vulnerability has been resolved: gpio: wcd934x: Fix shift-out-of-bounds error bit-mask for pins 0 to 4 is BIT(0) to BIT(4)…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
13.2th percentile
In the Linux kernel, the following vulnerability has been resolved: gpio: wcd934x: Fix shift-out-of-bounds error bit-mask for pins 0 to 4 is BIT(0) to BIT(4) however we ended up with BIT(n - 1) which is not right, and this was caught by below usban check UBSAN: shift-out-of-bounds in drivers/gpio/gpio-wcd934x.c:34:14

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.10.46-1 (bookworm)linux 5.10.46-1 (bookworm)
linuxlinux
linuxlinux>= 59c324683400b41caa6d85b091e812ee3d5415c3 < e0b518a2eb44d8a74c19e50f79a8ed393e96d634e0b518a2eb44d8a74c19e50f79a8ed393e96d634
linuxlinux>= 59c324683400b41caa6d85b091e812ee3d5415c3 < dd55331d493b7ea75c5db1f24d6822946fde2862dd55331d493b7ea75c5db1f24d6822946fde2862
linuxlinux>= 59c324683400b41caa6d85b091e812ee3d5415c3 < dbec64b11c65d74f31427e2b9d5746fbf17bf840dbec64b11c65d74f31427e2b9d5746fbf17bf840
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 5.11 < 5.12.115.12.11
linuxlinux_kernel>= 5.6 < 5.10.445.10.44

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.