CVE-2021-43975
Summary
| CVE | CVE-2021-43975 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-11-17 17:15:00 UTC |
| Updated | 2023-11-07 03:39:00 UTC |
| Description | In the Linux kernel through 5.15.2, hw_atl_utils_fw_rpc_wait in drivers/net/ethernet/aquantia/atlantic/hw_atl/hw_atl_utils.c allows an attacker (who can introduce a crafted device) to trigger an out-of-bounds write via a crafted length value. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] Fedora 35 Update: kernel-headers-5.15.4-200.fc35 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [SECURITY] [DLA 2941-1] linux-4.19 security update |
MLIST |
lists.debian.org |
|
| [PATCH] atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait |
|
lore.kernel.org |
|
| [SECURITY] Fedora 35 Update: kernel-headers-5.15.4-200.fc35 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [PATCH] atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait |
MISC |
lore.kernel.org |
|
| [SECURITY] Fedora 34 Update: kernel-5.15.4-101.fc34 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| kernel/git/netdev/net.git - Netdev Group's networking tree |
MISC |
git.kernel.org |
|
| Debian -- Security Information -- DSA-5096-1 linux |
DEBIAN |
www.debian.org |
|
| November 2021 Linux Kernel Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| FEDORA-2021-eab8c5a263 |
FEDORA |
lists.fedoraproject.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 161147 Oracle Enterprise Linux Security Update for kernel (ELSA-2023-7077)
- 179117 Debian Security Update for linux (DSA 5096-1)
- 179119 Debian Security Update for linux-4.19 (DLA 2941-1)
- 179508 Debian Security Update for linux (CVE-2021-43975)
- 198659 Ubuntu Security Notification for Linux kernel (OEM) Vulnerabilities (USN-5278-1)
- 198667 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5294-1)
- 198674 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5294-2)
- 198676 Ubuntu Security Notification for Linux kernel (GKE) Vulnerabilities (USN-5297-1)
- 198708 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5337-1)
- 198731 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5368-1)
- 198749 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5385-1)
- 242434 Red Hat Update for kernel-rt security (RHSA-2023:6901)
- 242451 Red Hat Update for kernel security (RHSA-2023:7077)
- 243041 Red Hat Update for kernel security (RHSA-2024:1188)
- 243087 Red Hat Update for kernel (RHSA-2024:1404)
- 282082 Fedora Security Update for kernel (FEDORA-2021-eab8c5a263)
- 282138 Fedora Security Update for kernel (FEDORA-2021-c09b851eb0)
- 353130 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.4-2022-021
- 353151 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.10-2022-009
- 610400 Google Pixel Android March 2022 Security Patch Missing
- 610408 Google Android April 2022 Security Patch Missing for Huawei EMUI
- 6140239 AWS Bottlerocket Security Update for kernel (GHSA-ggg2-5q8j-fxcw)
- 671219 EulerOS Security Update for kernel (EulerOS-SA-2022-1030)
- 671225 EulerOS Security Update for kernel (EulerOS-SA-2022-1010)
- 671282 EulerOS Security Update for kernel (EulerOS-SA-2022-1255)
- 671295 EulerOS Security Update for kernel (EulerOS-SA-2022-1243)
- 671344 EulerOS Security Update for kernel (EulerOS-SA-2022-1271)
- 751590 OpenSUSE Security Update for the Linux Kernel (openSUSE-SU-2022:0056-1)
- 751600 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:0068-1)
- 751602 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:0080-1)
- 751622 OpenSUSE Security Update for the Linux Kernel (openSUSE-SU-2022:0131-1)
- 751654 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:0197-1)
- 751695 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:0367-1)
- 751697 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:0366-1)
- 751701 OpenSUSE Security Update for the Linux Kernel (openSUSE-SU-2022:0366-1)
- 751702 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:0371-1)
- 751989 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:0131-1)
- 753133 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:0181-1)
- 753264 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:0079-1)
- 753355 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2022:0056-1)
- 900423 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (6228)
- 901081 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (6605-1)
- 906113 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (6228-1)
- 941453 AlmaLinux Security Update for kernel (ALSA-2023:7077)