PT-2024-11197 · Linux · Linux Kernel

Dan Carpenter

·

Published

2021-05-12

·

Updated

2024-12-12

·

CVE-2021-47148

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A buffer overflow issue has been resolved in the Linux kernel. The issue is located in the otx2 set rxfh context() function, which is called from ethtool set rxfh(). The *rss context variable comes from the user and can cause memory corruption if not properly checked. To prevent this, bounds checking has been added.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-07314
CVE-2021-47148

Affected Products

Linux Kernel