CVE-2021-47474
published 2024-05-22CVE-2021-47474: In the Linux kernel, the following vulnerability has been resolved: comedi: vmk80xx: fix bulk-buffer overflow The driver is using endpoint-sized buffers but…
PriorityP341high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.26%
17.5th percentile
In the Linux kernel, the following vulnerability has been resolved:
comedi: vmk80xx: fix bulk-buffer overflow
The driver is using endpoint-sized buffers but must not assume that the
tx and rx buffers are of equal size or a malicious device could overflow
the slab-allocated receive buffer when doing bulk transfers.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.15.3-1 (bookworm) | linux 5.15.3-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 985cafccbf9b7f862aa1c5ee566801e18b5161fb < e0e6a63fd97ad95fe05dfd77268a1952551e11a7 | e0e6a63fd97ad95fe05dfd77268a1952551e11a7 |
| linux | linux | >= 985cafccbf9b7f862aa1c5ee566801e18b5161fb < 7cfb35db607760698d299fd1cf7402dfa8f09973 | 7cfb35db607760698d299fd1cf7402dfa8f09973 |
| linux | linux | >= 985cafccbf9b7f862aa1c5ee566801e18b5161fb < 0866dcaa828c21bc2f94dac00e086078f11b5772 | 0866dcaa828c21bc2f94dac00e086078f11b5772 |
| linux | linux | >= 985cafccbf9b7f862aa1c5ee566801e18b5161fb < 063f576c43d589a4c153554b681d32b3f8317c7b | 063f576c43d589a4c153554b681d32b3f8317c7b |
| linux | linux | >= 985cafccbf9b7f862aa1c5ee566801e18b5161fb < 1ae4715121a57bc6fa29fd992127b01907f2f993 | 1ae4715121a57bc6fa29fd992127b01907f2f993 |
| linux | linux | >= 985cafccbf9b7f862aa1c5ee566801e18b5161fb < b7fd7f3387f070215e6be341e68eb5c087eeecc0 | b7fd7f3387f070215e6be341e68eb5c087eeecc0 |
| linux | linux | >= 985cafccbf9b7f862aa1c5ee566801e18b5161fb < 7b0e356189327287d0eb98ec081bd6dd97068cd3 | 7b0e356189327287d0eb98ec081bd6dd97068cd3 |
| linux | linux | >= 985cafccbf9b7f862aa1c5ee566801e18b5161fb < 47b4636ebdbeba2044b3db937c4d2b6a4fe3d0f2 | 47b4636ebdbeba2044b3db937c4d2b6a4fe3d0f2 |
| linux | linux | >= 985cafccbf9b7f862aa1c5ee566801e18b5161fb < 78cdfd62bd54af615fba9e3ca1ba35de39d3871d | 78cdfd62bd54af615fba9e3ca1ba35de39d3871d |
| linux | linux_kernel | >= 0 < 5.10.84-1 | 5.10.84-1 |
| linux | linux_kernel | >= 0 < 5.15.3-1 | 5.15.3-1 |
| linux | linux_kernel | >= 0 < 5.15.3-1 | 5.15.3-1 |
| linux | linux_kernel | >= 0 < 5.15.3-1 | 5.15.3-1 |
| linux | linux_kernel | >= 2.6.31 < 4.4.292 | 4.4.292 |
| linux | linux_kernel | >= 4.10 < 4.14.255 | 4.14.255 |
| linux | linux_kernel | >= 4.15 < 4.19.217 | 4.19.217 |
| linux | linux_kernel | >= 4.20 < 5.4.159 | 5.4.159 |
| linux | linux_kernel | >= 4.5 < 4.9.290 | 4.9.290 |
| linux | linux_kernel | >= 5.11 < 5.14.18 | 5.14.18 |
| linux | linux_kernel | >= 5.15 < 5.15.2 | 5.15.2 |
| linux | linux_kernel | >= 5.5 < 5.10.79 | 5.10.79 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2021-47474: In the Linux kernel, the following vulnerability has been resolved: comedi: vmk80xx: fix bulk-buffer overflow The driver is using endpoint-sized buffe
osv·2024-05-22·CVSS 7.8
CVE-2021-47474 [HIGH] CVE-2021-47474: In the Linux kernel, the following vulnerability has been resolved: comedi: vmk80xx: fix bulk-buffer overflow The driver is using endpoint-sized buffe
In the Linux kernel, the following vulnerability has been resolved: comedi: vmk80xx: fix bulk-buffer overflow The driver is using endpoint-sized buffers but must not assume that the tx and rx buffers are of equal size or a malicious device could overflow the slab-allocated receive buffer when doing bulk transfers.
GHSA
GHSA-4v89-q9h7-p6vx: In the Linux kernel, the following vulnerability has been resolved:
comedi: vmk80xx: fix bulk-buffer overflow
The driver is using endpoint-sized buf
ghsa_unreviewed·2024-05-22
CVE-2021-47474 [HIGH] CWE-787 GHSA-4v89-q9h7-p6vx: In the Linux kernel, the following vulnerability has been resolved:
comedi: vmk80xx: fix bulk-buffer overflow
The driver is using endpoint-sized buf
In the Linux kernel, the following vulnerability has been resolved:
comedi: vmk80xx: fix bulk-buffer overflow
The driver is using endpoint-sized buffers but must not assume that the
tx and rx buffers are of equal size or a malicious device could overflow
the slab-allocated receive buffer when doing bulk transfers.
Red Hat
kernel: comedi: vmk80xx: fix bulk-buffer overflow
vendor_redhat·2024-05-22·CVSS 7.8
CVE-2021-47474 [HIGH] CWE-119 kernel: comedi: vmk80xx: fix bulk-buffer overflow
kernel: comedi: vmk80xx: fix bulk-buffer overflow
In the Linux kernel, the following vulnerability has been resolved:
comedi: vmk80xx: fix bulk-buffer overflow
The driver is using endpoint-sized buffers but must not assume that the
tx and rx buffers are of equal size or a malicious device could overflow
the slab-allocated receive buffer when doing bulk transfers.
A flaw was found in the vmk80xx module in the Linux kernel. A malicious device can overflow the slab-allocated receive buffer when doing bulk transfers, resulting in a denial of service.
Statement: The vmk80xx module is not built in the kernel shipped in Red Hat Enterprise Linux, so it is not affected by this vulnerability.
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7
Debian
CVE-2021-47474: linux - In the Linux kernel, the following vulnerability has been resolved: comedi: vmk...
vendor_debian·2021·CVSS 7.8
CVE-2021-47474 [HIGH] CVE-2021-47474: linux - In the Linux kernel, the following vulnerability has been resolved: comedi: vmk...
In the Linux kernel, the following vulnerability has been resolved: comedi: vmk80xx: fix bulk-buffer overflow The driver is using endpoint-sized buffers but must not assume that the tx and rx buffers are of equal size or a malicious device could overflow the slab-allocated receive buffer when doing bulk transfers.
Scope: local
bookworm: resolved (fixed in 5.15.3-1)
bullseye: resolved (fixed in 5.10.84-1)
forky: resolved (fixed in 5.15.3-1)
sid: resolved (fixed in 5.15.3-1)
trixie: resolved (fixed in 5.15.3-1)
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/063f576c43d589a4c153554b681d32b3f8317c7bhttps://git.kernel.org/stable/c/0866dcaa828c21bc2f94dac00e086078f11b5772https://git.kernel.org/stable/c/1ae4715121a57bc6fa29fd992127b01907f2f993https://git.kernel.org/stable/c/47b4636ebdbeba2044b3db937c4d2b6a4fe3d0f2https://git.kernel.org/stable/c/78cdfd62bd54af615fba9e3ca1ba35de39d3871dhttps://git.kernel.org/stable/c/7b0e356189327287d0eb98ec081bd6dd97068cd3https://git.kernel.org/stable/c/7cfb35db607760698d299fd1cf7402dfa8f09973https://git.kernel.org/stable/c/b7fd7f3387f070215e6be341e68eb5c087eeecc0https://git.kernel.org/stable/c/e0e6a63fd97ad95fe05dfd77268a1952551e11a7https://git.kernel.org/stable/c/063f576c43d589a4c153554b681d32b3f8317c7bhttps://git.kernel.org/stable/c/0866dcaa828c21bc2f94dac00e086078f11b5772https://git.kernel.org/stable/c/1ae4715121a57bc6fa29fd992127b01907f2f993https://git.kernel.org/stable/c/47b4636ebdbeba2044b3db937c4d2b6a4fe3d0f2https://git.kernel.org/stable/c/78cdfd62bd54af615fba9e3ca1ba35de39d3871dhttps://git.kernel.org/stable/c/7b0e356189327287d0eb98ec081bd6dd97068cd3https://git.kernel.org/stable/c/7cfb35db607760698d299fd1cf7402dfa8f09973https://git.kernel.org/stable/c/b7fd7f3387f070215e6be341e68eb5c087eeecc0https://git.kernel.org/stable/c/e0e6a63fd97ad95fe05dfd77268a1952551e11a7
2024-05-22
Published