CVE-2021-28972

CVSS v3.1 6.7 (Medium)
67% Progress
CVSS v2.0 7.2 (High)
72% Progress
EPSS 0.05 % (20th)
0.05% Progress
Affected Products 5
Advisories 30

In drivers/pci/hotplug/rpadlpar_sysfs.c in the Linux kernel through 5.11.8, the RPA PCI Hotplug driver has a user-tolerable buffer overflow when writing a new device name to the driver from userspace, allowing userspace to write data to the kernel stack frame directly. This occurs because add_slot_store and remove_slot_store mishandle drc_name '\0' termination, aka CID-cc7a0bb058b8.

Weaknesses
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2021-03-22 17:15:15
(3 years ago)
Updated Date
2023-11-07 03:32:25
(10 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel prior 4.4.263 version cpe:2.3:o:linux:linux_kernel < 4.4.263
  Linux Kernel above 4.5 version and 4.9.263 and prior versions cpe:2.3:o:linux:linux_kernel > 4.5 <= 4.9.263
  Linux Kernel from 4.10 version and prior 4.14.227 version cpe:2.3:o:linux:linux_kernel >= 4.10 < 4.14.227
  Linux Kernel above 4.15 version and 4.19.183 and prior versions cpe:2.3:o:linux:linux_kernel > 4.15 <= 4.19.183
  Linux Kernel from 4.20 version and prior 5.4.108 version cpe:2.3:o:linux:linux_kernel >= 4.20 < 5.4.108
  Linux Kernel from 5.5.0 version and prior 5.10.26 version cpe:2.3:o:linux:linux_kernel >= 5.5.0 < 5.10.26
  Linux Kernel from 5.11 version and prior 5.11.9 version cpe:2.3:o:linux:linux_kernel >= 5.11 < 5.11.9

Configuration #2

    CPE23 From Up To
  Fedoraproject Fedora 32 cpe:2.3:o:fedoraproject:fedora:32
  Fedoraproject Fedora 33 cpe:2.3:o:fedoraproject:fedora:33
  Fedoraproject Fedora 34 cpe:2.3:o:fedoraproject:fedora:34

Configuration #3

    CPE23 From Up To
  Netapp Cloud Backup cpe:2.3:a:netapp:cloud_backup:-
  Netapp Fas/aff Baseboard Management Controller cpe:2.3:a:netapp:fas\%2faff_baseboard_management_controller:-
  Netapp Solidfire Baseboard Management Controller Firmware cpe:2.3:o:netapp:solidfire_baseboard_management_controller_firmware:-
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...