ubifs: Fix races between xattr_{set|get} and listxattr operations
Published May 21, 2024
7.8
HIGHCVSS 3.1
EPSS 0.25%
Description
UBIFS may occur some problems with concurrent xattr_{set|get} and listxattr operations, such as assertion failure, memory corruption, stale xattr value[1].
Fix it by importing a new rw-lock in @ubifs_inode to serilize write operations on xattr, concurrent read operations are still effective, just like ext4.
[1] https://lore.kernel.org/linux-mtd/20200630130438.141649-1-houtao1@huawei.com
Affected products
-
Affected
- ≥ , <
- ≥ , <
- ≥ , <
- ≥ , <
- ≥ , <
-
Affected
- 2.6.27
Unaffected
- ≥ 0, < 2.6.27
- ≥ 5.10.51, ≤ 5.10.*
- ≥ 5.12.18, ≤ 5.12.*
- ≥ 5.13.3, ≤ 5.13.*
- 5.14
- ≥ 5.4.133, ≤ 5.4.*
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
- ≥ 2.6.27 · < 5.4.133
- ≥ 5.5 · < 5.10.51
- ≥ 5.11 · < 5.12.18
- ≥ 5.13 · < 5.13.3
No data.
Red Hat Enterprise Linux 6
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel
Not affected
Red Hat Enterprise Linux 9
kernel-rt
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
Red Hat has investigated whether a possible mitigation exists for this issue, and has not been able to identify a practical example. Please update the affected package as soon as possible.
References (11)
- https://access.redhat.com/security/cve/CVE-2021-47351 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2282402 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2021-34356 Advisory
- https://git.kernel.org/stable/c/38dde03eb239605f428f3f1e4baa73d4933a4cc6 Patch
- https://git.kernel.org/stable/c/7adc05b73d91a5e3d4ca7714fa53ad9b70c53d08 Patch
- https://git.kernel.org/stable/c/9558612cb829f2c022b788f55d6b8437d5234a82 Patch
- https://git.kernel.org/stable/c/c0756f75c22149d20fcb7d8409827cee905eb386 Patch
- https://git.kernel.org/stable/c/f4e3634a3b642225a530c292fdb1e8a4007507f5 Patch
- https://lore.kernel.org/linux-cve-announce/2024052140-CVE-2021-47351-8e6c@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2021-47351
- https://www.cve.org/CVERecord?id=CVE-2021-47351
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
GitHub
No data