Input validation error in Linux kernel - CVE-2021-47018
Published: July 11, 2024 / Updated: May 13, 2025
Vulnerability details
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper input validation within the arch/powerpc/include/asm/nohash/64/pgtable.h, arch/powerpc/include/asm/fixmap.h, arch/powerpc/include/asm/book3s/64/pgtable.h. A local user can perform a denial of service (DoS) attack.
Affected software
Anolis OS
Red Hat Enterprise Linux for x86_64
Red Hat CodeReady Linux Builder for ARM 64
Red Hat CodeReady Linux Builder for Power, little endian
Red Hat CodeReady Linux Builder for x86_64
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for IBM z Systems
Technical Support Appliance
IBM Cloud Pak for Watson AIOps
Juniper Secure Analytics (JSA)
Red Hat OpenShift Container Platform
kernel (Red Hat package)
kernel-headers
kernel-debug-modules
kernel-modules
kernel-modules-extra
kernel-tools
kernel-tools-libs
kernel-tools-libs-devel
perf
python3-perf
kernel-abi-stablelists
kernel-doc
kernel-devel
kernel-debug-modules-extra
kernel-debug-devel
kernel-debug-core
kernel-debug
kernel-cross-headers
kernel-core
kernel
bpftool
Session Smart Router
IBM Qradar SIEM
How to mitigate CVE-2021-47018
Technical Support Appliance - update to 3.0.1
Juniper Secure Analytics (JSA) - update to 7.5.0 UP10 IF02
IBM Cloud Pak for Watson AIOps - update to 4.7.0
Red Hat OpenShift Container Platform - addressed in versions 4.13.48, 4.15.28
kernel (Red Hat package) - update to 4.18.0-553.16.1.el8_10
kernel-headers - update to 4.18.0-553.16.1.0.1
kernel-debug-modules - update to 4.18.0-553.16.1.0.1
kernel-modules - update to 4.18.0-553.16.1.0.1
kernel-modules-extra - update to 4.18.0-553.16.1.0.1
kernel-tools - update to 4.18.0-553.16.1.0.1
kernel-tools-libs - update to 4.18.0-553.16.1.0.1
kernel-tools-libs-devel - update to 4.18.0-553.16.1.0.1
perf - update to 4.18.0-553.16.1.0.1
python3-perf - update to 4.18.0-553.16.1.0.1
kernel-abi-stablelists - update to 4.18.0-553.16.1.0.1
kernel-doc - update to 4.18.0-553.16.1.0.1
kernel-devel - update to 4.18.0-553.16.1.0.1
kernel-debug-modules-extra - update to 4.18.0-553.16.1.0.1
kernel-debug-devel - update to 4.18.0-553.16.1.0.1
kernel-debug-core - update to 4.18.0-553.16.1.0.1
kernel-debug - update to 4.18.0-553.16.1.0.1
kernel-cross-headers - update to 4.18.0-553.16.1.0.1
kernel-core - update to 4.18.0-553.16.1.0.1
kernel - update to 4.18.0-553.16.1.0.1
bpftool - update to 4.18.0-553.16.1.0.1
Session Smart Router - addressed in versions 6.2.10, 6.3.7
IBM Qradar SIEM - update to 7.5.0 Update Pack 10 IF01
External References
- https://git.kernel.org/stable/c/4b9fb2c9039a206d37f215936a4d5bee7b1bf9cd
- https://git.kernel.org/stable/c/abb07dc5e8b61ab7b1dde20dd73aa01a3aeb183f
- https://git.kernel.org/stable/c/a84df7c80bdac598d6ac9268ae578da6928883e8
- https://git.kernel.org/stable/c/9ccba66d4d2aff9a3909aa77d57ea8b7cc166f3c
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.37
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.11.21
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.12.4
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.13
Related Security Bulletins
- Input validation error in Linux kernel book3s 64
- Red Hat Enterprise Linux 8 update for kernel
- Multiple vulnerabilities in Red Hat OpenShift Container Platform 4.15 packages
- Multiple vulnerabilities in Red Hat OpenShift Container Platform 4.15
- Multiple vulnerabilities in Red Hat OpenShift Container Platform 4.13
- Multiple vulnerabilities in IBM QRadar SIEM
- Multiple vulnerabilities in IBM Technical Support Appliance
- Multiple vulnerabilities in Juniper Secure Analytics (JSA)
- Multiple vulnerabilities in IBM Cloud Pak for AIOps
- Anolis OS update for kernel
- Juniper Session Smart Router update for third-party components