cbcvebase.
CVE-2021-47368
published 2024-05-21

CVE-2021-47368: In the Linux kernel, the following vulnerability has been resolved: enetc: Fix illegal access when reading affinity_hint irq_set_affinity_hit() stores a…

PriorityP343high8.1CVSS 3.1
AVNACLPRLUINSUCHINAH
EPSS
0.94%
56.8th percentile
In the Linux kernel, the following vulnerability has been resolved: enetc: Fix illegal access when reading affinity_hint irq_set_affinity_hit() stores a reference to the cpumask_t parameter in the irq descriptor, and that reference can be accessed later from irq_affinity_hint_proc_show(). Since the cpu_mask parameter passed to irq_set_affinity_hit() has only temporary storage (it's on the stack memory), later accesses to it are illegal. Thus reads from the corresponding procfs affinity_hint file can result in paging request oops. The issue is fixed by the get_cpu_mask() helper, which provides a permanent storage for the cpumask_t parameter.

Affected

14 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.14.9-1 (bookworm)linux 5.14.9-1 (bookworm)
linuxlinux
linuxlinux>= d4fd0404c1c95b17880f254ebfee3485693fa8ba < 4c4c3052911b577920353a7646e4883d5da40c284c4c3052911b577920353a7646e4883d5da40c28
linuxlinux>= d4fd0404c1c95b17880f254ebfee3485693fa8ba < 6c3f1b741c6c2914ea120e3a5790d3e900152f7b6c3f1b741c6c2914ea120e3a5790d3e900152f7b
linuxlinux>= d4fd0404c1c95b17880f254ebfee3485693fa8ba < 6f329d9da2a5ae032fcde800a99b118124ed52706f329d9da2a5ae032fcde800a99b118124ed5270
linuxlinux>= d4fd0404c1c95b17880f254ebfee3485693fa8ba < 7237a494decfa17d0b9d0076e6cee3235719de907237a494decfa17d0b9d0076e6cee3235719de90
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.70-15.10.70-1
linuxlinux_kernel>= 0 < 5.14.9-15.14.9-1
linuxlinux_kernel>= 0 < 5.14.9-15.14.9-1
linuxlinux_kernel>= 0 < 5.14.9-15.14.9-1
linuxlinux_kernel>= 5.1 < 5.4.1505.4.150
linuxlinux_kernel>= 5.11 < 5.14.95.14.9
linuxlinux_kernel>= 5.5 < 5.10.705.10.70

CVSS provenance

nvdv3.18.1HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv8.1HIGH
vendor_debian8.1HIGH
vendor_redhat8.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.