Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2021-47463— mm/secretmem: fix NULL page->mapping dereference in page_is_secretmem()

AI Predicted 7.8 Difficulty: Moderate EPSS 0.18% · P8

Affected Version Matrix 6

VendorProductVersion RangeStatus
LinuxLinux1507f51255c9ff07d75909a84e7c0d7f3c4b2f49< b77ba1e02345bafd703f0d407bdbd88c3be1f767affected
1507f51255c9ff07d75909a84e7c0d7f3c4b2f49< 79f9bc5843142b649575f887dccdf1c07ad75c20affected
5.14affected
< 5.14unaffected
5.14.15≤ 5.14.*unaffected
5.15≤ *unaffected
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2021-47463

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
mm/secretmem: fix NULL page->mapping dereference in page_is_secretmem()
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: mm/secretmem: fix NULL page->mapping dereference in page_is_secretmem() Check for a NULL page->mapping before dereferencing the mapping in page_is_secretmem(), as the page's mapping can be nullified while gup() is running, e.g. by reclaim or truncation. BUG: kernel NULL pointer dereference, address: 0000000000000068 #PF: supervisor read access in kernel mode #PF: error_code(0x0000) - not-present page PGD 0 P4D 0 Oops: 0000 [#1] PREEMPT SMP NOPTI CPU: 6 PID: 4173897 Comm: CPU 3/KVM Tainted: G W RIP: 0010:internal_get_user_pages_fast+0x621/0x9d0 Code: <48> 81 7a 68 80 08 04 bc 0f 85 21 ff ff 8 89 c7 be RSP: 0018:ffffaa90087679b0 EFLAGS: 00010046 RAX: ffffe3f37905b900 RBX: 00007f2dd561e000 RCX: ffffe3f37905b934 RDX: 0000000000000000 RSI: 0000000000000000 RDI: ffffe3f37905b900 ... CR2: 0000000000000068 CR3: 00000004c5898003 CR4: 00000000001726e0 Call Trace: get_user_pages_fast_only+0x13/0x20 hva_to_pfn+0xa9/0x3e0 try_async_pf+0xa1/0x270 direct_page_fault+0x113/0xad0 kvm_mmu_page_fault+0x69/0x680 vmx_handle_exit+0xe1/0x5d0 kvm_arch_vcpu_ioctl_run+0xd81/0x1c70 kvm_vcpu_ioctl+0x267/0x670 __x64_sys_ioctl+0x83/0xa0 do_syscall_64+0x56/0x80 entry_SYSCALL_64_after_hwframe+0x44/0xae
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于空指针取消引用。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux 1507f51255c9ff07d75909a84e7c0d7f3c4b2f49 ~ b77ba1e02345bafd703f0d407bdbd88c3be1f767 -
LinuxLinux 5.14 -

II. Public POCs for CVE-2021-47463

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2021-47463

登录查看更多情报信息。

Other References for CVE-2021-47463 (1)

Same Patch Batch · Linux · 2024-05-22 · 63 CVEs total

CVE-2021-474969.8 CRITICALnet/tls: Fix flipped sign in tls_err_abort() calls
CVE-2021-474789.1 CRITICALisofs: Fix out of bound access for corrupted isofs image
CVE-2021-474508.8 HIGHKVM: arm64: Fix host stage-2 PGD refcount
CVE-2021-474338.1 HIGHbtrfs: fix abort logic in btrfs_replace_file_extents
CVE-2021-474467.8 HIGHdrm/msm/a4xx: fix error handling in a4xx_gpu_init()
CVE-2021-474937.8 HIGHocfs2: fix race between searching chunks and release journal_head from buffer_head
CVE-2021-474927.8 HIGHmm, thp: bail out early in collapse_file for writeback page
CVE-2021-474947.8 HIGHcfg80211: fix management registrations locking
CVE-2021-474517.8 HIGHnetfilter: xt_IDLETIMER: fix panic that occurs when timer_type has garbage value
CVE-2021-474477.8 HIGHdrm/msm/a3xx: fix error handling in a3xx_gpu_init()
CVE-2021-474857.8 HIGHIB/qib: Protect from buffer overflow in struct qib_user_sdma_pkt fields
CVE-2021-474837.8 HIGHregmap: Fix possible double-free in regcache_rbtree_exit()
CVE-2021-474597.8 HIGHcan: j1939: j1939_netdev_start(): fix UAF for rx_kref of j1939_priv
CVE-2021-474617.8 HIGHuserfaultfd: fix a race between writeprotect and exit_mmap()
CVE-2021-474487.5 HIGHmptcp: fix possible stall on recvmsg()
CVE-2021-474387.1 HIGHnet/mlx5e: Fix memory leak in mlx5_core_destroy_cq() error path
CVE-2021-474657.1 HIGHKVM: PPC: Book3S HV: Fix stack handling in idle_kvm_start_guest()
CVE-2021-474587.1 HIGHocfs2: mount fails with buffer overflow in strlen
CVE-2021-47497nvmem: Fix shift-out-of-bound (UBSAN) with byte size cells
CVE-2021-47498dm rq: don't queue request to blk-mq during DM suspend

Showing top 20 of 63 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2021-47463

No comments yet


Leave a comment