CVE-2021-47188

Aliases:UBUNTU-CVE-2021-47188DEBIAN-CVE-2021-47188
Modified
Published: 10 Apr 2024, 18:56
Last modified:05 Aug 2026, 08:46

Vulnerability Summary

Overall Risk (default)
medium
31/100
CVSS Score
7.8 HIGH
v3.1 (cve.org)
EPSS Score
0.24% LOW
0% probability +0.23%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

10 Apr 2024, 18:56
Published
Vulnerability first disclosed
05 Aug 2026, 08:46
Last Modified
Vulnerability information updated

Description

In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Improve SCSI abort handling The following has been observed on a test setup: WARNING: CPU: 4 PID: 250 at drivers/scsi/ufs/ufshcd.c:2737 ufshcd_queuecommand+0x468/0x65c Call trace: ufshcd_queuecommand+0x468/0x65c scsi_send_eh_cmnd+0x224/0x6a0 scsi_eh_test_devices+0x248/0x418 scsi_eh_ready_devs+0xc34/0xe58 scsi_error_handler+0x204/0x80c kthread+0x150/0x1b4 ret_from_fork+0x10/0x30 That warning is triggered by the following statement: WARN_ON(lrbp->cmd); Fix this warning by clearing lrbp->cmd from the abort handler.

CVSS Metrics

  • v3.1MEDIUMScore: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
  • v3.1HIGHScore: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS Trends

Current EPSS score: 0.24% Percentile: 15%

Affected Systems

  • debianlinux

    < 5.10.259-1 | < 5.15.5-1 | < 5.15.5-1 | < 5.15.5-1

  • ubuntulinux

    all | < 4.4.0-259.293 | < 4.15.0-229.241 | < 5.4.0-196.216

  • ubuntulinux-allwinner-5.19

    all

  • ubuntulinux-aws

    < 4.4.0-1136.142 | < 4.4.0-1174.189 | < 4.15.0-1173.186 | < 5.4.0-1133.143

  • ubuntulinux-aws-5.0

    all

  • ubuntulinux-aws-5.11

    all

  • ubuntulinux-aws-5.13

    all

  • ubuntulinux-aws-5.19

    all

  • ubuntulinux-aws-5.3

    all

  • ubuntulinux-aws-5.4

    < 5.4.0-1133.143~18.04.1

  • ubuntulinux-aws-5.8

    all

  • ubuntulinux-aws-6.2

    all

  • ubuntulinux-aws-fips

    < 4.15.0-2111.117 | all | < 5.4.0-1133.143+fips1

  • ubuntulinux-aws-hwe

    < 4.15.0-1173.186~16.04.1

  • ubuntulinux-azure

    < 4.15.0-1181.196~14.04.1 | < 4.15.0-1181.196~16.04.1 | all | < 5.4.0-1138.145

  • ubuntulinux-azure-4.15

    < 4.15.0-1181.196

  • ubuntulinux-azure-5.11

    all

  • ubuntulinux-azure-5.13

    all

  • ubuntulinux-azure-5.19

    all

  • ubuntulinux-azure-5.3

    all

  • ubuntulinux-azure-5.4

    < 5.4.0-1138.145~18.04.1

  • ubuntulinux-azure-5.8

    all

  • ubuntulinux-azure-6.2

    all

  • ubuntulinux-azure-edge

    all

  • ubuntulinux-azure-fde

    all

  • ubuntulinux-azure-fde-5.19

    all

  • ubuntulinux-azure-fde-6.2

    all

  • ubuntulinux-azure-fips

    < 4.15.0-2090.96 | all | < 5.4.0-1138.145+fips1

  • ubuntulinux-bluefield

    all | < 5.4.0-1093.100

  • ubuntulinux-fips

    < 4.4.0-1105.112 | all | < 4.15.0-1127.138 | < 5.4.0-1107.117

  • ubuntulinux-gcp

    < 4.15.0-1166.183~16.04.1 | all | < 5.4.0-1137.146

  • ubuntulinux-gcp-4.15

    < 4.15.0-1166.183

  • ubuntulinux-gcp-5.11

    all

  • ubuntulinux-gcp-5.13

    all

  • ubuntulinux-gcp-5.19

    all

  • ubuntulinux-gcp-5.3

    all

  • ubuntulinux-gcp-5.4

    < 5.4.0-1137.146~18.04.1

  • ubuntulinux-gcp-5.8

    all

  • ubuntulinux-gcp-6.2

    all

  • ubuntulinux-gcp-fips

    < 4.15.0-2074.79 | all | < 5.4.0-1137.146+fips1

  • ubuntulinux-gke

    all

  • ubuntulinux-gke-4.15

    all

  • ubuntulinux-gke-5.15

    all

  • ubuntulinux-gke-5.4

    all

  • ubuntulinux-gkeop

    < 5.4.0-1100.104

  • ubuntulinux-gkeop-5.4

    all

  • ubuntulinux-hwe

    < 4.15.0-229.241~16.04.1 | all

  • ubuntulinux-hwe-5.11

    all

  • ubuntulinux-hwe-5.13

    all

  • ubuntulinux-hwe-5.19

    all

Showing first 50 affected entries in server-rendered view.

References (14)