CVE-2021-47027

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Feb 28, 2024
Updated: Jan 10, 2025

Summary

CVE-2021-47027 is a vulnerability affecting the Linux kernel that causes a kernel crash when the firmware for the mt7921 network driver fails to download. This issue is due to a problem in the free_msi_irqs function in the msi.c file. The crash results in a kernel panic and the system is unable to sync, leading to secondary CPUs being stopped. The vulnerability was discovered during the mt7921_pci_probe function and can be traced back to the driver registration process. The code for this vulnerability is 'a94257f6 f9400bf7 a8c47bfd d65f03c0 (d4210000)'. The vulnerability can potentially cause system instability and require a reboot to correct.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share