PT-2024-11110 · Linux+2 · Linux Kernel+2

Zhen Lei

·

Published

2021-03-25

·

Updated

2025-03-19

·

CVE-2021-47006

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability has been resolved in the Linux kernel. The issue is related to the hw breakpoint feature, where the overflow handler hook is not properly checked. A commit set a default event->overflow handler in perf event alloc(), but one check is missing, resulting in bp->overflow handler never being NULL. As a consequence, enable single step() is always not invoked. The vulnerability is related to the perf/core component and the is default overflow handler() function.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-06535
CVE-2021-47006
OESA-2024-1345
OESA-2024-1346
OPENSUSE-SU-2024_1489-1
SUSE-SU-2024:1454-1
SUSE-SU-2024:1465-1
SUSE-SU-2024:1489-1
SUSE-SU-2024:1643-1
SUSE-SU-2024:1646-1
SUSE-SU-2024:1870-1

Affected Products

Astra Linux
Linux Kernel
Suse