cbcvebase.
CVE-2021-47165
published 2024-03-25

CVE-2021-47165: In the Linux kernel, the following vulnerability has been resolved: drm/meson: fix shutdown crash when component not probed When main component is not probed…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.23%
13.3th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/meson: fix shutdown crash when component not probed When main component is not probed, by example when the dw-hdmi module is not loaded yet or in probe defer, the following crash appears on shutdown: Unable to handle kernel NULL pointer dereference at virtual address 0000000000000038 ... pc : meson_drv_shutdown+0x24/0x50 lr : platform_drv_shutdown+0x20/0x30 ... Call trace: meson_drv_shutdown+0x24/0x50 platform_drv_shutdown+0x20/0x30 device_shutdown+0x158/0x360 kernel_restart_prepare+0x38/0x48 kernel_restart+0x18/0x68 __do_sys_reboot+0x224/0x250 __arm64_sys_reboot+0x24/0x30 ... Simply check if the priv struct has been allocated before using it.

Affected

24 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.14.6-1 (bookworm)linux 5.14.6-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= 4.14.226 < 4.14.2354.14.235
linuxlinux>= 4.19.181 < 4.19.1934.19.193
linuxlinux>= 5.10.24 < 5.10.425.10.42
linuxlinux>= 5.11.7 < 5.125.12
linuxlinux>= 5.4.106 < 5.4.1245.4.124
linuxlinux>= 8a5160cc8488776ddc48ea045860dab015f47390 < b4298d33c1fcce511ffe84d8d3de07e220300f9bb4298d33c1fcce511ffe84d8d3de07e220300f9b
linuxlinux>= 8fbbf2b3849419e31731902d7478b0c934732632 < e256a0eb43e17209e347409a80805b1659398d68e256a0eb43e17209e347409a80805b1659398d68
linuxlinux>= d2100ef32a8cfd024bad94f4fbc5e53d40d2b3da < 4ce2bf20b4a6e307e114847d60b2bf40a6a1fac04ce2bf20b4a6e307e114847d60b2bf40a6a1fac0
linuxlinux>= d4ec1ffbdaa8939a208656e9c1440742c457ef16 < d66083c0d6f5125a4d982aa177dd71ab4cd3d212d66083c0d6f5125a4d982aa177dd71ab4cd3d212
linuxlinux>= fa0c16caf3d73ab4d2e5d6fa2ef2394dbec91791 < b4b91033a0b11fe9ade58156cd9168f89f4a8c1ab4b91033a0b11fe9ade58156cd9168f89f4a8c1a
linuxlinux>= fa0c16caf3d73ab4d2e5d6fa2ef2394dbec91791 < 7cfc4ea78fc103ea51ecbacd9236abb5b1c490d27cfc4ea78fc103ea51ecbacd9236abb5b1c490d2
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 4.14.226 < 4.14.2354.14.235
linuxlinux_kernel>= 4.19.181 < 4.19.1934.19.193
linuxlinux_kernel>= 5.10.24 < 5.10.425.10.42
linuxlinux_kernel>= 5.12 < 5.12.95.12.9
linuxlinux_kernel>= 5.4.106 < 5.4.1245.4.124

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.