CVE-2021-47336
published 2024-05-21CVE-2021-47336: In the Linux kernel, the following vulnerability has been resolved: smackfs: restrict bytes count in smk_set_cipso() Oops, I failed to update subject line…
PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.25%
16.0th percentile
In the Linux kernel, the following vulnerability has been resolved:
smackfs: restrict bytes count in smk_set_cipso()
Oops, I failed to update subject line.
From 07571157c91b98ce1a4aa70967531e64b78e8346 Mon Sep 17 00:00:00 2001
Date: Mon, 12 Apr 2021 22:25:06 +0900
Subject: [PATCH] smackfs: restrict bytes count in smk_set_cipso()
Commit 7ef4c19d245f3dc2 ("smackfs: restrict bytes count in smackfs write
functions") missed that count > SMK_CIPSOMAX check applies to only
format == SMK_FIXED24_FMT case.
Affected
21 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.14.6-1 (bookworm) | linux 5.14.6-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= f7112e6c9abf1c70f001dcf097c1d6e218a93f5c < 5f9880403e6b71d56924748ba331daf836243fca | 5f9880403e6b71d56924748ba331daf836243fca |
| linux | linux | >= f7112e6c9abf1c70f001dcf097c1d6e218a93f5c < 5c2dca9a7a7ff6a2df34158903515e2e4fd3d2b2 | 5c2dca9a7a7ff6a2df34158903515e2e4fd3d2b2 |
| linux | linux | >= f7112e6c9abf1c70f001dcf097c1d6e218a93f5c < cbd87ba6a13891acf6180783f8234a8b7a3e3d4d | cbd87ba6a13891acf6180783f8234a8b7a3e3d4d |
| linux | linux | >= f7112e6c9abf1c70f001dcf097c1d6e218a93f5c < 135122f174c357b7a3e58f40fa5792156c5e93e6 | 135122f174c357b7a3e58f40fa5792156c5e93e6 |
| linux | linux | >= f7112e6c9abf1c70f001dcf097c1d6e218a93f5c < 3780348c1a0e14ffefcaf1fc521f815bcaac94b0 | 3780348c1a0e14ffefcaf1fc521f815bcaac94b0 |
| linux | linux | >= f7112e6c9abf1c70f001dcf097c1d6e218a93f5c < 8f5c773a2871cf446e3f36b2834fb25bbb28512b | 8f5c773a2871cf446e3f36b2834fb25bbb28512b |
| linux | linux | >= f7112e6c9abf1c70f001dcf097c1d6e218a93f5c < 258fd821f69378453c071b9dd767b298810fc766 | 258fd821f69378453c071b9dd767b298810fc766 |
| linux | linux | >= f7112e6c9abf1c70f001dcf097c1d6e218a93f5c < 49ec114a6e62d8d320037ce71c1aaf9650b3cafd | 49ec114a6e62d8d320037ce71c1aaf9650b3cafd |
| linux | linux_kernel | < 4.9.276 | 4.9.276 |
| linux | linux_kernel | >= 0 < 5.10.70-1 | 5.10.70-1 |
| linux | linux_kernel | >= 0 < 5.14.6-1 | 5.14.6-1 |
| linux | linux_kernel | >= 0 < 5.14.6-1 | 5.14.6-1 |
| linux | linux_kernel | >= 0 < 5.14.6-1 | 5.14.6-1 |
| linux | linux_kernel | >= 4.10 < 4.14.240 | 4.14.240 |
| linux | linux_kernel | >= 4.15 < 4.19.198 | 4.19.198 |
| linux | linux_kernel | >= 4.20 < 5.4.133 | 5.4.133 |
| linux | linux_kernel | >= 5.11 < 5.12.18 | 5.12.18 |
| linux | linux_kernel | >= 5.13 < 5.13.3 | 5.13.3 |
| linux | linux_kernel | >= 5.5 < 5.10.51 | 5.10.51 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2021-47336: In the Linux kernel, the following vulnerability has been resolved: smackfs: restrict bytes count in smk_set_cipso() Oops, I failed to update subject
osv·2024-05-21·CVSS 7.8
CVE-2021-47336 [HIGH] CVE-2021-47336: In the Linux kernel, the following vulnerability has been resolved: smackfs: restrict bytes count in smk_set_cipso() Oops, I failed to update subject
In the Linux kernel, the following vulnerability has been resolved: smackfs: restrict bytes count in smk_set_cipso() Oops, I failed to update subject line. From 07571157c91b98ce1a4aa70967531e64b78e8346 Mon Sep 17 00:00:00 2001 Date: Mon, 12 Apr 2021 22:25:06 +0900 Subject: [PATCH] smackfs: restrict bytes count in smk_set_cipso() Commit 7ef4c19d245f3dc2 ("smackfs: restrict bytes count in smackfs write functions") missed that count > SMK_CIPSOMAX check applies to only format == SMK_FIXED24_FMT case.
GHSA
GHSA-h3hv-fpf3-c5jm: In the Linux kernel, the following vulnerability has been resolved:
smackfs: restrict bytes count in smk_set_cipso()
Oops, I failed to update subjec
ghsa_unreviewed·2024-05-21
CVE-2021-47336 [HIGH] GHSA-h3hv-fpf3-c5jm: In the Linux kernel, the following vulnerability has been resolved:
smackfs: restrict bytes count in smk_set_cipso()
Oops, I failed to update subjec
In the Linux kernel, the following vulnerability has been resolved:
smackfs: restrict bytes count in smk_set_cipso()
Oops, I failed to update subject line.
From 07571157c91b98ce1a4aa70967531e64b78e8346 Mon Sep 17 00:00:00 2001
Date: Mon, 12 Apr 2021 22:25:06 +0900
Subject: [PATCH] smackfs: restrict bytes count in smk_set_cipso()
Commit 7ef4c19d245f3dc2 ("smackfs: restrict bytes count in smackfs write
functions") missed that count > SMK_CIPSOMAX check applies to only
format == SMK_FIXED24_FMT case.
Red Hat
kernel: smackfs: restrict bytes count in smk_set_cipso()
vendor_redhat·2024-05-21·CVSS 7.8
CVE-2021-47336 [HIGH] CWE-20 kernel: smackfs: restrict bytes count in smk_set_cipso()
kernel: smackfs: restrict bytes count in smk_set_cipso()
In the Linux kernel, the following vulnerability has been resolved:
smackfs: restrict bytes count in smk_set_cipso()
Oops, I failed to update subject line.
From 07571157c91b98ce1a4aa70967531e64b78e8346 Mon Sep 17 00:00:00 2001
Date: Mon, 12 Apr 2021 22:25:06 +0900
Subject: [PATCH] smackfs: restrict bytes count in smk_set_cipso()
Commit 7ef4c19d245f3dc2 ("smackfs: restrict bytes count in smackfs write
functions") missed that count > SMK_CIPSOMAX check applies to only
format == SMK_FIXED24_FMT case.
Package: kernel (Red Hat Enterprise Linux 6) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel-rt (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel (Red Hat Ent
Debian
CVE-2021-47336: linux - In the Linux kernel, the following vulnerability has been resolved: smackfs: re...
vendor_debian·2021·CVSS 7.8
CVE-2021-47336 [HIGH] CVE-2021-47336: linux - In the Linux kernel, the following vulnerability has been resolved: smackfs: re...
In the Linux kernel, the following vulnerability has been resolved: smackfs: restrict bytes count in smk_set_cipso() Oops, I failed to update subject line. From 07571157c91b98ce1a4aa70967531e64b78e8346 Mon Sep 17 00:00:00 2001 Date: Mon, 12 Apr 2021 22:25:06 +0900 Subject: [PATCH] smackfs: restrict bytes count in smk_set_cipso() Commit 7ef4c19d245f3dc2 ("smackfs: restrict bytes count in smackfs write functions") missed that count > SMK_CIPSOMAX check applies to only format == SMK_FIXED24_FMT case.
Scope: local
bookworm: resolved (fixed in 5.14.6-1)
bullseye: resolved (fixed in 5.10.70-1)
forky: resolved (fixed in 5.14.6-1)
sid: resolved (fixed in 5.14.6-1)
trixie: resolved (fixed in 5.14.6-1)
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/135122f174c357b7a3e58f40fa5792156c5e93e6https://git.kernel.org/stable/c/258fd821f69378453c071b9dd767b298810fc766https://git.kernel.org/stable/c/3780348c1a0e14ffefcaf1fc521f815bcaac94b0https://git.kernel.org/stable/c/49ec114a6e62d8d320037ce71c1aaf9650b3cafdhttps://git.kernel.org/stable/c/5c2dca9a7a7ff6a2df34158903515e2e4fd3d2b2https://git.kernel.org/stable/c/5f9880403e6b71d56924748ba331daf836243fcahttps://git.kernel.org/stable/c/8f5c773a2871cf446e3f36b2834fb25bbb28512bhttps://git.kernel.org/stable/c/cbd87ba6a13891acf6180783f8234a8b7a3e3d4dhttps://git.kernel.org/stable/c/135122f174c357b7a3e58f40fa5792156c5e93e6https://git.kernel.org/stable/c/258fd821f69378453c071b9dd767b298810fc766https://git.kernel.org/stable/c/3780348c1a0e14ffefcaf1fc521f815bcaac94b0https://git.kernel.org/stable/c/49ec114a6e62d8d320037ce71c1aaf9650b3cafdhttps://git.kernel.org/stable/c/5c2dca9a7a7ff6a2df34158903515e2e4fd3d2b2https://git.kernel.org/stable/c/5f9880403e6b71d56924748ba331daf836243fcahttps://git.kernel.org/stable/c/8f5c773a2871cf446e3f36b2834fb25bbb28512bhttps://git.kernel.org/stable/c/cbd87ba6a13891acf6180783f8234a8b7a3e3d4d
2024-05-21
Published