Wind River Support Network

HomeDefectsLIN1021-7856
Fixed

LIN1021-7856 : Security Advisory - linux - CVE-2021-47148

Created: Mar 25, 2024    Updated: May 22, 2024
Resolved Date: May 21, 2024
Found In Version: 10.21.20.1
Fix Version: 10.21.20.21
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:

octeontx2-pf: fix a buffer overflow in otx2_set_rxfh_context()

This function is called from ethtool_set_rxfh() and "*rss_context"
comes from the user.  Add some bounds checking to prevent memory
corruption.


CREATE(Triage):(User=admin) CVE-2021-47148 (https://nvd.nist.gov/vuln/detail/CVE-2021-47148)

CVEs


Live chat
Online