CVE-2021-47478
Medium
Elevated severity or exploit probability.
CVSS base
9.1
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
EPSS — probability of exploitation (30 days)
0.7%
51.0th percentile
CISA KEV
Not listed
Weakness / dates
CWE-125
Published 2024-05-22 · modified 2026-08-04
CVSS breakdown
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
| Attack Vector | N | Network |
| Attack Complexity | L | Low |
| Privileges Required | N | None |
| User Interaction | N | None |
| Scope | U | Unchanged |
| Confidentiality | H | High |
| Integrity | N | None |
| Availability | H | High |
Timeline
- 2024-05-22 — Published (NVD)
- 2026-08-04 — Last modified (NVD)
Description
In the Linux kernel, the following vulnerability has been resolved: isofs: Fix out of bound access for corrupted isofs image When isofs image is suitably corrupted isofs_read_inode() can read data beyond the end of buffer. Sanity-check the directory entry length before using it.
Affected
References
- https://git.kernel.org/stable/c/156ce5bb6cc43a80a743810199defb1dc3f55b7f
- https://git.kernel.org/stable/c/6e80e9314f8bb52d9eabe1907698718ff01120f5
- https://git.kernel.org/stable/c/86d4aedcbc69c0f84551fb70f953c24e396de2d7
- https://git.kernel.org/stable/c/9ec33a9b8790c212cc926a88c5e2105f97f3f57e
- https://git.kernel.org/stable/c/afbd40f425227e661d991757e11cc4db024e761f
- https://git.kernel.org/stable/c/b0ddff8d68f2e43857a84dce54c3deab181c8ae1
- https://git.kernel.org/stable/c/b2fa1f52d22c5455217b294629346ad23a744945
- https://git.kernel.org/stable/c/e7fb722586a2936b37bdff096c095c30ca06404d
- https://git.kernel.org/stable/c/e96a1866b40570b5950cda8602c2819189c62a48
- https://git.kernel.org/stable/c/156ce5bb6cc43a80a743810199defb1dc3f55b7f
- https://git.kernel.org/stable/c/6e80e9314f8bb52d9eabe1907698718ff01120f5
- https://git.kernel.org/stable/c/86d4aedcbc69c0f84551fb70f953c24e396de2d7
- https://git.kernel.org/stable/c/9ec33a9b8790c212cc926a88c5e2105f97f3f57e
- https://git.kernel.org/stable/c/afbd40f425227e661d991757e11cc4db024e761f
- https://git.kernel.org/stable/c/b0ddff8d68f2e43857a84dce54c3deab181c8ae1
- https://git.kernel.org/stable/c/b2fa1f52d22c5455217b294629346ad23a744945
- https://git.kernel.org/stable/c/e7fb722586a2936b37bdff096c095c30ca06404d
- https://git.kernel.org/stable/c/e96a1866b40570b5950cda8602c2819189c62a48