CVE-2021-47176
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
25/03/2024
Last modified:
17/03/2025
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
s390/dasd: add missing discipline function<br />
<br />
Fix crash with illegal operation exception in dasd_device_tasklet.<br />
Commit b72949328869 ("s390/dasd: Prepare for additional path event handling")<br />
renamed the verify_path function for ECKD but not for FBA and DIAG.<br />
This leads to a panic when the path verification function is called for a<br />
FBA or DIAG device.<br />
<br />
Fix by defining a wrapper function for dasd_generic_verify_path().
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.4.235 (including) | 5.4.237 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.10.173 (including) | 5.10.175 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.11 (including) | 5.12.9 (excluding) |
| cpe:2.3:o:linux:linux_kernel:5.13:rc1:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:5.13:rc2:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:5.13:rc3:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://git.kernel.org/stable/c/6a16810068e70959bc1df686424aa35ce05578f1
- https://git.kernel.org/stable/c/a16be88a3d7e5efcb59a15edea87a8bd369630c6
- https://git.kernel.org/stable/c/aa8579bc084673c651204f7cd0d6308a47dffc16
- https://git.kernel.org/stable/c/c0c8a8397fa8a74d04915f4d3d28cb4a5d401427
- https://git.kernel.org/stable/c/6a16810068e70959bc1df686424aa35ce05578f1
- https://git.kernel.org/stable/c/a16be88a3d7e5efcb59a15edea87a8bd369630c6
- https://git.kernel.org/stable/c/aa8579bc084673c651204f7cd0d6308a47dffc16
- https://git.kernel.org/stable/c/c0c8a8397fa8a74d04915f4d3d28cb4a5d401427



