DEBIAN-CVE-2021-47138
Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 25 Mar 2024, 09:15
Last modified:28 Apr 2026, 20:23
Vulnerability Summary
Overall Risk (default)
medium
28/100 CVSS Score
7.1 HIGH
3.1 (osv_debian)
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
25 Mar 2024, 09:15
Published
Vulnerability first disclosed
28 Apr 2026, 20:23
Last Modified
Vulnerability information updated
Description
In the Linux kernel, the following vulnerability has been resolved: cxgb4: avoid accessing registers when clearing filters Hardware register having the server TID base can contain invalid values when adapter is in bad state (for example, due to AER fatal error). Reading these invalid values in the register can lead to out-of-bound memory access. So, fix by using the saved server TID base when clearing filters.
CVSS Metrics
- v3.1•HIGH•Score: 7.1CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Affected Systems
- debian•linux
< 5.10.46-1 | < 5.14.6-1 | < 5.14.6-1 | < 5.14.6-1