Wind River Support Network

HomeDefectsLIN1021-7872
Fixed

LIN1021-7872 : Security Advisory - linux - CVE-2021-47168

Created: Mar 25, 2024    Updated: May 24, 2024
Resolved Date: May 23, 2024
Found In Version: 10.21.20.1
Fix Version: 10.21.20.21
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:

NFS: fix an incorrect limit in filelayout_decode_layout()

The "sizeof(struct nfs_fh)" is two bytes too large and could lead to
memory corruption.  It should be NFS_MAXFHSIZE because that's the size
of the ->data] buffer.

I reversed the size of the arguments to put the variable on the left.

CREATE(Triage):(User=admin) [CVE-2021-47168 (https://nvd.nist.gov/vuln/detail/CVE-2021-47168)

CVEs


Live chat
Online