cbcvebase.
CVE-2021-47547
published 2024-05-24

CVE-2021-47547: In the Linux kernel, the following vulnerability has been resolved: net: tulip: de4x5: fix the problem that the array 'lp->phy[8]' may be out of bound In line…

PriorityP415medium4.4CVSS 3.1
AVLACLPRLUINSUCNILAL
EPSS
0.23%
14.4th percentile
In the Linux kernel, the following vulnerability has been resolved: net: tulip: de4x5: fix the problem that the array 'lp->phy[8]' may be out of bound In line 5001, if all id in the array 'lp->phy[8]' is not 0, when the 'for' end, the 'k' is 8. At this time, the array 'lp->phy[8]' may be out of bound.

Affected

22 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.15.15-1 (bookworm)linux 5.15.15-1 (bookworm)
linuxlinux
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < ec5bd0aef1cec96830d0c7e06d3597d9e786cc98ec5bd0aef1cec96830d0c7e06d3597d9e786cc98
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 142ead3dc70411bd5977e8c47a6d8bf22287b3f8142ead3dc70411bd5977e8c47a6d8bf22287b3f8
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < d3dedaa5a601107cfedda087209772c76e364d58d3dedaa5a601107cfedda087209772c76e364d58
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 2c1a6a9a011d622a7c61324a97a49801ba425eff2c1a6a9a011d622a7c61324a97a49801ba425eff
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 77ff166909458646e66450e42909e0adacc9904977ff166909458646e66450e42909e0adacc99049
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < f059fa40f0fcc6bc7a12e0f2a2504e9a4ff74f1ff059fa40f0fcc6bc7a12e0f2a2504e9a4ff74f1f
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 12f907cb11576b8cd0b1d95a16d1f10ed5bb723712f907cb11576b8cd0b1d95a16d1f10ed5bb7237
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 61217be886b5f7402843677e4be7e7e83de9cb4161217be886b5f7402843677e4be7e7e83de9cb41
linuxlinux_kernel< 4.4.2944.4.294
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.84-15.10.84-1
linuxlinux_kernel>= 0 < 5.15.15-15.15.15-1
linuxlinux_kernel>= 0 < 5.15.15-15.15.15-1
linuxlinux_kernel>= 0 < 5.15.15-15.15.15-1
linuxlinux_kernel>= 4.10 < 4.14.2574.14.257
linuxlinux_kernel>= 4.15 < 4.19.2204.19.220
linuxlinux_kernel>= 4.20 < 5.4.1645.4.164
linuxlinux_kernel>= 4.5 < 4.9.2924.9.292
linuxlinux_kernel>= 5.11 < 5.15.75.15.7
linuxlinux_kernel>= 5.5 < 5.10.845.10.84

CVSS provenance

nvdv3.14.4MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
osv4.4MEDIUM
vendor_debian4.4MEDIUM
vendor_redhat4.4MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.