CVE-2021-46943

HIGH

Linux Kernel 5.2-5.4.118 - Denial of Service via SW-IOMMU Buffer Overflow

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: media: staging/intel-ipu3: Fix set_fmt error handling If there in an error during a set_fmt, do not overwrite the previous sizes with the invalid config. Without this patch, v4l2-compliance ends up allocating 4GiB of RAM and causing the following OOPs [ 38.662975] ipu3-imgu 0000:00:05.0: swiotlb buffer is full (sz: 4096 bytes) [ 38.662980] DMA: Out of SW-IOMMU space for 4096 bytes at device 0000:00:05.0 [ 38.663010] general protection fault: 0000 [#1] PREEMPT SMP

Scores

CVSS v3 7.8
EPSS 0.0023
EPSS Percentile 14.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-131
Status published
Products (13)
Linux/Linux < 5.2
Linux/Linux 5.10.36 - 5.10.*
Linux/Linux 5.11.20 - 5.11.*
Linux/Linux 5.12.3 - 5.12.*
Linux/Linux 5.13
Linux/Linux 5.2
Linux/Linux 5.4.118 - 5.4.*
Linux/Linux 6d5f26f2e045f2377b524516194657c00efbbce8 - 34892ea938387d83ffcfb7775ec55f0f80767916
Linux/Linux 6d5f26f2e045f2377b524516194657c00efbbce8 - 6fb617e37a39db0a3eca4489431359d0bdf3b9bc
Linux/Linux 6d5f26f2e045f2377b524516194657c00efbbce8 - a03fb1e8a110658215a4cefc3e2ad53279e496a6
... and 3 more
Published Feb 27, 2024
Tracked Since Feb 18, 2026