CVE-2021-46920

MEDIUM

Linux Kernel 5.6-5.10.32 5.11.16-5.11.* 5.12 - Memory Corruption via DMA Engine SWERR Overflow Bit Clobbering

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix clobbering of SWERR overflow bit on writeback Current code blindly writes over the SWERR and the OVERFLOW bits. Write back the bits actually read instead so the driver avoids clobbering the OVERFLOW bit that comes after the register is read.

Scores

CVSS v3 5.5
EPSS 0.0022
EPSS Percentile 12.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (9)
Linux/Linux < 5.6
Linux/Linux 5.10.32 - 5.10.*
Linux/Linux 5.11.16 - 5.11.*
Linux/Linux 5.12
Linux/Linux 5.6
Linux/Linux bfe1d56091c1a404b3d4ce7e9809d745fc4453bb - 02981a44a0e402089775416371bd2e0c935685f8
Linux/Linux bfe1d56091c1a404b3d4ce7e9809d745fc4453bb - a5ad12d5d69c63af289a37f05187a0c6fe93553d
Linux/Linux bfe1d56091c1a404b3d4ce7e9809d745fc4453bb - ea941ac294d75d0ace50797aebf0056f6f8f7a7f
linux/linux_kernel 5.6.0 - 5.10.32
Published Feb 27, 2024
Tracked Since Feb 18, 2026