cbcvebase.
CVE-2021-47308
published 2024-05-21

CVE-2021-47308: In the Linux kernel, the following vulnerability has been resolved: scsi: libfc: Fix array index out of bound exception Fix array index out of bound exception…

PriorityP430medium6.5CVSS 3.1
AVNACLPRNUINSUCLINAL
EPSS
1.00%
59.3th percentile
In the Linux kernel, the following vulnerability has been resolved: scsi: libfc: Fix array index out of bound exception Fix array index out of bound exception in fc_rport_prli_resp().

Affected

17 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.14.6-1 (bookworm)linux 5.14.6-1 (bookworm)
linuxlinux
linuxlinux>= 386b97b43c0c9e0d878eec7ea1db16af22b036ae < 44651522941c623e20882b3b443f23f77de1ea8b44651522941c623e20882b3b443f23f77de1ea8b
linuxlinux>= 386b97b43c0c9e0d878eec7ea1db16af22b036ae < 4921b1618045ffab71b1050bf0014df3313a22894921b1618045ffab71b1050bf0014df3313a2289
linuxlinux>= 386b97b43c0c9e0d878eec7ea1db16af22b036ae < 0fe70c15f9435bb3c50954778245d62ee38b0e030fe70c15f9435bb3c50954778245d62ee38b0e03
linuxlinux>= 386b97b43c0c9e0d878eec7ea1db16af22b036ae < a4a54c54af2516caa9c145015844543cfc84316aa4a54c54af2516caa9c145015844543cfc84316a
linuxlinux>= 386b97b43c0c9e0d878eec7ea1db16af22b036ae < 8511293e643a18b248510ae5734e4f360754348c8511293e643a18b248510ae5734e4f360754348c
linuxlinux>= 386b97b43c0c9e0d878eec7ea1db16af22b036ae < b27c4577557045f1ab3cdfeabfc7f3cd24aca1feb27c4577557045f1ab3cdfeabfc7f3cd24aca1fe
linuxlinux_kernel< 4.14.2414.14.241
linuxlinux_kernel>= 0 < 5.10.70-15.10.70-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 4.15 < 4.19.1994.19.199
linuxlinux_kernel>= 4.20 < 5.4.1355.4.135
linuxlinux_kernel>= 5.11 < 5.13.55.13.5
linuxlinux_kernel>= 5.5 < 5.10.535.10.53

CVSS provenance

nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L
osv6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.