CVE-2021-46918
In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: clear MSIX permission entry on shutdown Add disabling/clearing of MSIX permission entries on device shutdown to mirror the enabling of the MSIX entries on probe.
Does this matter?
Lower severity and a low EPSS score (0.19%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: clear MSIX permission entry on shutdown Add disabling/clearing of MSIX permission entries on device shutdown to mirror the enabling of the MSIX entries on probe. Current code left the MSIX enabled and the pasid entries still programmed at device shutdown.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.19% probability · 9th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/6df0e6c57dfc064af330071f372f11aa8c584997Patch
- https://git.kernel.org/stable/c/c84b8982d7aa9b4717dc36a1c6cbc93ee153b500Patch
- https://git.kernel.org/stable/c/6df0e6c57dfc064af330071f372f11aa8c584997Patch
- https://git.kernel.org/stable/c/c84b8982d7aa9b4717dc36a1c6cbc93ee153b500Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.