Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Michael Braun

#46388of 53,634
5.5Total CVSS
Vulnerabilities · 1
PT-2021-2458
5.5
2021-03-05
Linux · Linux Kernel · CVE-2021-29264
**Name of the Vulnerable Software and Affected Versions** Linux kernel versions through 5.11.10 **Description** An issue in the Freescale Gianfar Ethernet driver allows attackers to cause a system crash due to a negative fragment size calculation when jumbo packets are used and NAPI is enabled, particularly in situations involving an rx queue overrun. The vulnerability is related to incorrect buffer size calculation. **Recommendations** For Linux kernel versions through 5.11.10, consider disabling the use of jumbo packets or NAPI to minimize the risk of exploitation until a patch is available. Restrict access to the Freescale Gianfar Ethernet driver to prevent potential system crashes. At the moment, there is no information about a newer version that contains a fix for this vulnerability.