IT

Tracker / CVE-2021-47138

CVE-2021-47138

High 7.1

In the Linux kernel, the following vulnerability has been resolved: cxgb4: avoid accessing registers when clearing filters Hardware register having the server TID base can contain invalid values when adapter is in bad state (for example, due to AER fatal error). Reading these invalid values in the register can lead to out-of-bound memory access. So, fix by using the saved server TID base when clearing filters.

Affected products and versions

linux linux_kernel
linux linux_kernel · 5.11 → 5.12.9
linux linux_kernel · 5.2 → 5.4.124
linux linux_kernel · 5.5 → 5.10.42

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References