cbcvebase.
CVE-2021-47276
published 2024-05-21

CVE-2021-47276: In the Linux kernel, the following vulnerability has been resolved: ftrace: Do not blindly read the ip address in ftrace_bug() It was reported that a bug on…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
14.7th percentile
In the Linux kernel, the following vulnerability has been resolved: ftrace: Do not blindly read the ip address in ftrace_bug() It was reported that a bug on arm64 caused a bad ip address to be used for updating into a nop in ftrace_init(), but the error path (rightfully) returned -EINVAL and not -EFAULT, as the bug caused more than one error to occur. But because -EINVAL was returned, the ftrace_bug() tried to report what was at the location of the ip address, and read it directly. This caused the machine to panic, as the ip was not pointing to a valid memory address. Instead, read the ip address with copy_from_kernel_nofault() to safely access the memory, and if it faults, report that the address faulted, otherwise report what was in that location.

Affected

22 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.10.46-1 (bookworm)linux 5.10.46-1 (bookworm)
linuxlinux
linuxlinux>= 05736a427f7e16be948ccbf39782bd3a6ae16b14 < 0bc62e398bbd9e600959e610def5109957437b280bc62e398bbd9e600959e610def5109957437b28
linuxlinux>= 05736a427f7e16be948ccbf39782bd3a6ae16b14 < 4aedc2bc2b32c93555f47c95610efb89cc1ec09b4aedc2bc2b32c93555f47c95610efb89cc1ec09b
linuxlinux>= 05736a427f7e16be948ccbf39782bd3a6ae16b14 < acf671ba79c1feccc3ec7cfdcffead4efcec49e7acf671ba79c1feccc3ec7cfdcffead4efcec49e7
linuxlinux>= 05736a427f7e16be948ccbf39782bd3a6ae16b14 < 862dcc14f2803c556bdd73b43c27b023fafce2fb862dcc14f2803c556bdd73b43c27b023fafce2fb
linuxlinux>= 05736a427f7e16be948ccbf39782bd3a6ae16b14 < 7e4e824b109f1d41ccf223fbb0565d877d6223a27e4e824b109f1d41ccf223fbb0565d877d6223a2
linuxlinux>= 05736a427f7e16be948ccbf39782bd3a6ae16b14 < 97524384762c1fb9b3ded931498dd2047bd0de8197524384762c1fb9b3ded931498dd2047bd0de81
linuxlinux>= 05736a427f7e16be948ccbf39782bd3a6ae16b14 < 3e4ddeb68751fb4fb657199aed9cfd5d027968753e4ddeb68751fb4fb657199aed9cfd5d02796875
linuxlinux>= 05736a427f7e16be948ccbf39782bd3a6ae16b14 < 6c14133d2d3f768e0a35128faac8aa6ed48150516c14133d2d3f768e0a35128faac8aa6ed4815051
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 2.6.28 < 4.4.2734.4.273
linuxlinux_kernel>= 4.10 < 4.14.2374.14.237
linuxlinux_kernel>= 4.15 < 4.19.1954.19.195
linuxlinux_kernel>= 4.20 < 5.4.1265.4.126
linuxlinux_kernel>= 4.5 < 4.9.2734.9.273
linuxlinux_kernel>= 5.11 < 5.12.115.12.11
linuxlinux_kernel>= 5.5 < 5.10.445.10.44

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.