cbcvebase.
CVE-2021-47260
published 2024-05-21

CVE-2021-47260: In the Linux kernel, the following vulnerability has been resolved: NFS: Fix a potential NULL dereference in nfs_get_client() None of the callers are expecting…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
14.7th percentile
In the Linux kernel, the following vulnerability has been resolved: NFS: Fix a potential NULL dereference in nfs_get_client() None of the callers are expecting NULL returns from nfs_get_client() so this code will lead to an Oops. It's better to return an error pointer. I expect that this is dead code so hopefully no one is affected.

Affected

23 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.10.46-1 (bookworm)linux 5.10.46-1 (bookworm)
linuxlinux
linuxlinux>= 31434f496abb9f3410b10f541462fe58613dd3ad < fab8bfdfb4aac9e4e8363666333adfdf21e89106fab8bfdfb4aac9e4e8363666333adfdf21e89106
linuxlinux>= 31434f496abb9f3410b10f541462fe58613dd3ad < a979e601000982a3ca693171a6d4dffc47f8ad00a979e601000982a3ca693171a6d4dffc47f8ad00
linuxlinux>= 31434f496abb9f3410b10f541462fe58613dd3ad < 634f17ff1d59905eb3b4bbbc00805961d08beaee634f17ff1d59905eb3b4bbbc00805961d08beaee
linuxlinux>= 31434f496abb9f3410b10f541462fe58613dd3ad < 4b380a7d84ef2ce3f4f5bec5d8706ed937ac65024b380a7d84ef2ce3f4f5bec5d8706ed937ac6502
linuxlinux>= 31434f496abb9f3410b10f541462fe58613dd3ad < 0057ecef9f324007c0ba5fcca4ddd131178ce78b0057ecef9f324007c0ba5fcca4ddd131178ce78b
linuxlinux>= 31434f496abb9f3410b10f541462fe58613dd3ad < 279ad78a00f8b9c5ff24171a59297187a3bd44b7279ad78a00f8b9c5ff24171a59297187a3bd44b7
linuxlinux>= 31434f496abb9f3410b10f541462fe58613dd3ad < 58ddf61f10b8f9b7b1341644bfee2f1c6508d4e158ddf61f10b8f9b7b1341644bfee2f1c6508d4e1
linuxlinux>= 31434f496abb9f3410b10f541462fe58613dd3ad < 09226e8303beeec10f2ff844d2e46d1371dc58e009226e8303beeec10f2ff844d2e46d1371dc58e0
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 4.4.0-270.3044.4.0-270.304
linuxlinux_kernel>= 3.17 < 4.4.2734.4.273
linuxlinux_kernel>= 4.10 < 4.14.2374.14.237
linuxlinux_kernel>= 4.15 < 4.19.1954.19.195
linuxlinux_kernel>= 4.20 < 5.4.1265.4.126
linuxlinux_kernel>= 4.5 < 4.9.2734.9.273
linuxlinux_kernel>= 5.11 < 5.12.115.12.11
linuxlinux_kernel>= 5.5 < 5.10.445.10.44

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
vendor_ubuntu5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.