Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2021-47145— btrfs: do not BUG_ON in link_to_fixup_dir

AI Predicted 4.7 Difficulty: Theoretical EPSS 0.27% · P20

Affected Version Matrix 18

VendorProductVersion RangeStatus
LinuxLinuxe02119d5a7b4396c5a872582fddc8bd6d305a70a< 76bfd8ac20bebeae599452a03dfc5724c0475dcfaffected
e02119d5a7b4396c5a872582fddc8bd6d305a70a< e934c4ee17b33bafb0444f2f9766cda7166d3c40affected
e02119d5a7b4396c5a872582fddc8bd6d305a70a< 0eaf383c6a4a83c09f60fd07a1bea9f1a9181611affected
e02119d5a7b4396c5a872582fddc8bd6d305a70a< 6eccfb28f8dca70c9b1b3bb3194ca54cbe73a9faaffected
e02119d5a7b4396c5a872582fddc8bd6d305a70a< 0ed102453aa1cd12fefde8f6b60b9519b0b1f003affected
e02119d5a7b4396c5a872582fddc8bd6d305a70a< 7e13db503918820e6333811cdc6f151dcea5090aaffected
e02119d5a7b4396c5a872582fddc8bd6d305a70a< b545442133580dcb2f2496133bf850824d41255caffected
e02119d5a7b4396c5a872582fddc8bd6d305a70a< 91df99a6eb50d5a1bc70fff4a09a0b7ae6aab96daffected
… +10 more rows
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2021-47145

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
btrfs: do not BUG_ON in link_to_fixup_dir
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: btrfs: do not BUG_ON in link_to_fixup_dir While doing error injection testing I got the following panic kernel BUG at fs/btrfs/tree-log.c:1862! invalid opcode: 0000 [#1] SMP NOPTI CPU: 1 PID: 7836 Comm: mount Not tainted 5.13.0-rc1+ #305 Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.13.0-2.fc32 04/01/2014 RIP: 0010:link_to_fixup_dir+0xd5/0xe0 RSP: 0018:ffffb5800180fa30 EFLAGS: 00010216 RAX: fffffffffffffffb RBX: 00000000fffffffb RCX: ffff8f595287faf0 RDX: ffffb5800180fa37 RSI: ffff8f5954978800 RDI: 0000000000000000 RBP: ffff8f5953af9450 R08: 0000000000000019 R09: 0000000000000001 R10: 000151f408682970 R11: 0000000120021001 R12: ffff8f5954978800 R13: ffff8f595287faf0 R14: ffff8f5953c77dd0 R15: 0000000000000065 FS: 00007fc5284c8c40(0000) GS:ffff8f59bbd00000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 00007fc5287f47c0 CR3: 000000011275e002 CR4: 0000000000370ee0 Call Trace: replay_one_buffer+0x409/0x470 ? btree_read_extent_buffer_pages+0xd0/0x110 walk_up_log_tree+0x157/0x1e0 walk_log_tree+0xa6/0x1d0 btrfs_recover_log_trees+0x1da/0x360 ? replay_one_extent+0x7b0/0x7b0 open_ctree+0x1486/0x1720 btrfs_mount_root.cold+0x12/0xea ? __kmalloc_track_caller+0x12f/0x240 legacy_get_tree+0x24/0x40 vfs_get_tree+0x22/0xb0 vfs_kern_mount.part.0+0x71/0xb0 btrfs_mount+0x10d/0x380 ? vfs_parse_fs_string+0x4d/0x90 legacy_get_tree+0x24/0x40 vfs_get_tree+0x22/0xb0 path_mount+0x433/0xa10 __x64_sys_mount+0xe3/0x120 do_syscall_64+0x3d/0x80 entry_SYSCALL_64_after_hwframe+0x44/0xae We can get -EIO or any number of legitimate errors from btrfs_search_slot(), panicing here is not the appropriate response. The error path for this code handles errors properly, simply return the error.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于在注入测试时会引起内核恐慌。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux e02119d5a7b4396c5a872582fddc8bd6d305a70a ~ 76bfd8ac20bebeae599452a03dfc5724c0475dcf -
LinuxLinux 2.6.29 -

II. Public POCs for CVE-2021-47145

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2021-47145

登录查看更多情报信息。

Other References for CVE-2021-47145 (8)

Same Patch Batch · Linux · 2024-03-25 · 40 CVEs total

CVE-2021-471379.8 CRITICALnet: lantiq: fix memory corruption in RX ring
CVE-2021-471629.8 CRITICALtipc: skb_linearize the head skb when reassembling msgs
CVE-2021-471689.8 CRITICALNFS: fix an incorrect limit in filelayout_decode_layout()
CVE-2021-471368.6 HIGHnet: zero-initialize tc skb extension on allocation
CVE-2021-471608.1 HIGHnet: dsa: mt7530: fix VLAN traffic leaks
CVE-2021-471427.8 HIGHdrm/amdgpu: Fix a use-after-free
CVE-2021-471757.8 HIGHnet/sched: fq_pie: fix OOB access in the traffic path
CVE-2021-471487.8 HIGHocteontx2-pf: fix a buffer overflow in otx2_set_rxfh_context()
CVE-2021-471637.8 HIGHtipc: wait and exit until all work queues are done
CVE-2021-471527.8 HIGHmptcp: fix data stream corruption
CVE-2021-471537.8 HIGHi2c: i801: Don't generate an interrupt on bus reset
CVE-2021-471587.8 HIGHnet: dsa: sja1105: add error handling in sja1105_setup()
CVE-2021-471597.8 HIGHnet: dsa: fix a crash if ->get_sset_count() fails
CVE-2021-471787.5 HIGHscsi: target: core: Avoid smp_processor_id() in preemptible code
CVE-2021-471797.5 HIGHNFSv4: Fix a NULL pointer dereference in pnfs_mark_matching_lsegs_return()
CVE-2021-47180NFC: nci: fix memory leak in nci_allocate_device
CVE-2021-47169serial: rp2: use 'request_firmware' instead of 'request_firmware_nowait'
CVE-2021-47170USB: usbfs: Don't WARN about excessively large memory allocations
CVE-2021-47167NFS: Fix an Oopsable condition in __nfs_pageio_add_request()
CVE-2021-47171net: usb: fix memory leak in smsc75xx_bind

Showing top 20 of 40 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2021-47145

No comments yet


Leave a comment