CVE-2021-47004
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
28/02/2024
Last modified:
08/01/2025
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
f2fs: fix to avoid touching checkpointed data in get_victim()<br />
<br />
In CP disabling mode, there are two issues when using LFS or SSR | AT_SSR<br />
mode to select victim:<br />
<br />
1. LFS is set to find source section during GC, the victim should have<br />
no checkpointed data, since after GC, section could not be set free for<br />
reuse.<br />
<br />
Previously, we only check valid chpt blocks in current segment rather<br />
than section, fix it.<br />
<br />
2. SSR | AT_SSR are set to find target segment for writes which can be<br />
fully filled by checkpointed and newly written blocks, we should never<br />
select such segment, otherwise it can cause panic or data corruption<br />
during allocation, potential case is described as below:<br />
<br />
a) target segment has &#39;n&#39; (n
Impact
Base Score 3.x
7.10
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 4.20 (including) | 5.10.38 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.11 (including) | 5.11.22 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.12 (including) | 5.12.5 (excluding) |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://git.kernel.org/stable/c/105155a8146ddb54c119d8318964eef3859d109d
- https://git.kernel.org/stable/c/1e116f87825f01a6380286472196882746b16f63
- https://git.kernel.org/stable/c/211372b2571520e394b56b431a0705586013b3ff
- https://git.kernel.org/stable/c/61461fc921b756ae16e64243f72af2bfc2e620db
- https://git.kernel.org/stable/c/105155a8146ddb54c119d8318964eef3859d109d
- https://git.kernel.org/stable/c/1e116f87825f01a6380286472196882746b16f63
- https://git.kernel.org/stable/c/211372b2571520e394b56b431a0705586013b3ff
- https://git.kernel.org/stable/c/61461fc921b756ae16e64243f72af2bfc2e620db



