{"schema_version":"1.7.5","id":"CVE-2021-47172","published":"2024-03-25T10:15:08.967Z","modified":"2026-03-14T11:19:00.167538Z","related":["SUSE-SU-2024:1454-1","SUSE-SU-2024:1465-1","SUSE-SU-2024:1489-1"],"details":"In the Linux kernel, the following vulnerability has been resolved:\n\niio: adc: ad7124: Fix potential overflow due to non sequential channel numbers\n\nChannel numbering must start at 0 and then not have any holes, or\nit is possible to overflow the available storage.  Note this bug was\nintroduced as part of a fix to ensure we didn't rely on the ordering\nof child nodes.  So we need to support arbitrary ordering but they all\nneed to be there somewhere.\n\nNote I hit this when using qemu to test the rest of this series.\nArguably this isn't the best fix, but it is probably the most minimal\noption for backporting etc.\n\nAlexandru's sign-off is here because he carried this patch in a larger\nset that Jonathan then applied.","affected":[{"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-47172.json","unresolved_ranges":[{"events":[{"introduced":"5.4.14"},{"fixed":"5.4.124"}]},{"events":[{"introduced":"5.5"},{"fixed":"5.10.42"}]},{"events":[{"introduced":"5.11"},{"fixed":"5.12.9"}]},{"events":[{"introduced":"0"},{"last_affected":"5.13-rc1"}]},{"events":[{"introduced":"0"},{"last_affected":"5.13-rc2"}]},{"events":[{"introduced":"0"},{"last_affected":"5.13-rc3"}]}]}}],"references":[{"type":"FIX","url":"https://git.kernel.org/stable/c/26da8040eccc6c6b0e415e9a3baf72fd39eb2fdc"},{"type":"FIX","url":"https://git.kernel.org/stable/c/f2a772c51206b0c3f262e4f6a3812c89a650191b"},{"type":"FIX","url":"https://git.kernel.org/stable/c/f49149964d2423fb618fb6b755bb1eaa431cca2c"},{"type":"FIX","url":"https://git.kernel.org/stable/c/f70122825076117787b91e7f219e21c09f11a5b9"}],"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"}]}