U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2021-46943

Change History

New CVE Received by NIST 2/27/2024 2:04:06 PM

Action Type Old Value New Value
Added Description

								
							
							
						
In the Linux kernel, the following vulnerability has been resolved:

media: staging/intel-ipu3: Fix set_fmt error handling

If there in an error during a set_fmt, do not overwrite the previous
sizes with the invalid config.

Without this patch, v4l2-compliance ends up allocating 4GiB of RAM and
causing the following OOPs

[   38.662975] ipu3-imgu 0000:00:05.0: swiotlb buffer is full (sz: 4096 bytes)
[   38.662980] DMA: Out of SW-IOMMU space for 4096 bytes at device 0000:00:05.0
[   38.663010] general protection fault: 0000 [#1] PREEMPT SMP
Added Reference

								
							
							
						
Linux https://git.kernel.org/stable/c/34892ea938387d83ffcfb7775ec55f0f80767916 [No types assigned]
Added Reference

								
							
							
						
Linux https://git.kernel.org/stable/c/6fb617e37a39db0a3eca4489431359d0bdf3b9bc [No types assigned]
Added Reference

								
							
							
						
Linux https://git.kernel.org/stable/c/a03fb1e8a110658215a4cefc3e2ad53279e496a6 [No types assigned]
Added Reference

								
							
							
						
Linux https://git.kernel.org/stable/c/ad91849996f9dd79741a961fd03585a683b08356 [No types assigned]
Added Reference

								
							
							
						
Linux https://git.kernel.org/stable/c/c6b81b897f6f9445d57f8d47c4e060ec21556137 [No types assigned]