cbcvebase.
CVE-2021-47432
published 2024-05-21

CVE-2021-47432: In the Linux kernel, the following vulnerability has been resolved: lib/generic-radix-tree.c: Don't overflow in peek() When we started spreading new inode…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
14.8th percentile
In the Linux kernel, the following vulnerability has been resolved: lib/generic-radix-tree.c: Don't overflow in peek() When we started spreading new inode numbers throughout most of the 64 bit inode space, that triggered some corner case bugs, in particular some integer overflows related to the radix tree code. Oops.

Affected

15 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.64-1 (bookworm)linux 6.1.64-1 (bookworm)
linuxlinux
linuxlinux>= ba20ba2e3743bac786dff777954c11930256075e < 784d01f9bbc282abb0c5ade5beb98a87f50343ac784d01f9bbc282abb0c5ade5beb98a87f50343ac
linuxlinux>= ba20ba2e3743bac786dff777954c11930256075e < ec298b958cb0c40d70c68079da933c8f31c5134cec298b958cb0c40d70c68079da933c8f31c5134c
linuxlinux>= ba20ba2e3743bac786dff777954c11930256075e < aa7f1827953100cdde0795289a80c6c077bfe437aa7f1827953100cdde0795289a80c6c077bfe437
linuxlinux>= ba20ba2e3743bac786dff777954c11930256075e < 9492261ff2460252cf2d8de89cdf854c7e2b28a09492261ff2460252cf2d8de89cdf854c7e2b28a0
linuxlinux_kernel< 6.1.646.1.64
linuxlinux_kernel>= 0 < 6.1.64-16.1.64-1
linuxlinux_kernel>= 0 < 6.5.13-16.5.13-1
linuxlinux_kernel>= 0 < 6.5.13-16.5.13-1
linuxlinux_kernel>= 6.2 < 6.5.136.5.13
linuxlinux_kernel>= 6.6 < 6.6.36.6.3
msrccbl2_kernel_5.15.186.1-1_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.200.1-1_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.202.1-1_on_cbl_mariner_2.0

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.