Out-of-bounds read in Linux kernel - CVE-2021-47282
Published: May 31, 2024 / Updated: May 14, 2025
Linux kernel
Linux Foundation
Description
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to an out-of-bounds read error within the BCM2835_SPI_MODE_BITS(), bcm2835_spi_setup() and bcm2835_spi_probe() functions in drivers/spi/spi-bcm2835.c. A local user can perform a denial of service (DoS) attack.
Remediation
External links
- https://git.kernel.org/stable/c/b5502580cf958b094f3b69dfe4eece90eae01fbc
- https://git.kernel.org/stable/c/82a8ffba54d31e97582051cb56ba1f988018681e
- https://git.kernel.org/stable/c/01415ff85a24308059e06ca3e97fd7bf75648690
- https://git.kernel.org/stable/c/13817d466eb8713a1ffd254f537402f091d48444
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.44
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.12.11
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.13
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.4.126