CVE-2021-47518
published 2024-05-24CVE-2021-47518: In the Linux kernel, the following vulnerability has been resolved: nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done The done() netlink callback…
PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
15.1th percentile
In the Linux kernel, the following vulnerability has been resolved:
nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done
The done() netlink callback nfc_genl_dump_ses_done() should check if
received argument is non-NULL, because its allocation could fail earlier
in dumpit() (nfc_genl_dump_ses()).
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.15.15-1 (bookworm) | linux 5.15.15-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= ac22ac466a659f1b2e02a2e2ee23fc5c42da2c95 < 87cdb8789c38e44ae5454aafe277997c950d00ed | 87cdb8789c38e44ae5454aafe277997c950d00ed |
| linux | linux | >= ac22ac466a659f1b2e02a2e2ee23fc5c42da2c95 < 69bb79a8f5bb9f436b6f1434ca9742591b7bbe18 | 69bb79a8f5bb9f436b6f1434ca9742591b7bbe18 |
| linux | linux | >= ac22ac466a659f1b2e02a2e2ee23fc5c42da2c95 < 811a7576747760bcaf60502f096d1e6e91d566fa | 811a7576747760bcaf60502f096d1e6e91d566fa |
| linux | linux | >= ac22ac466a659f1b2e02a2e2ee23fc5c42da2c95 < 3b861a40325eac9c4c13b6c53874ad90617e944d | 3b861a40325eac9c4c13b6c53874ad90617e944d |
| linux | linux | >= ac22ac466a659f1b2e02a2e2ee23fc5c42da2c95 < 48fcd08fdbe05e35b650a252ec2a2d96057a1c7a | 48fcd08fdbe05e35b650a252ec2a2d96057a1c7a |
| linux | linux | >= ac22ac466a659f1b2e02a2e2ee23fc5c42da2c95 < 83ea620a1be840bf05089a5061fb8323ca42f38c | 83ea620a1be840bf05089a5061fb8323ca42f38c |
| linux | linux | >= ac22ac466a659f1b2e02a2e2ee23fc5c42da2c95 < fae9705d281091254d4a81fa2da9d22346097dca | fae9705d281091254d4a81fa2da9d22346097dca |
| linux | linux | >= ac22ac466a659f1b2e02a2e2ee23fc5c42da2c95 < 4cd8371a234d051f9c9557fcbb1f8c523b1c0d10 | 4cd8371a234d051f9c9557fcbb1f8c523b1c0d10 |
| linux | linux_kernel | >= 0 < 5.10.92-1 | 5.10.92-1 |
| linux | linux_kernel | >= 0 < 5.15.15-1 | 5.15.15-1 |
| linux | linux_kernel | >= 0 < 5.15.15-1 | 5.15.15-1 |
| linux | linux_kernel | >= 0 < 5.15.15-1 | 5.15.15-1 |
| linux | linux_kernel | >= 0 < 4.4.0-258.292 | 4.4.0-258.292 |
| linux | linux_kernel | >= 3.12 < 4.4.295 | 4.4.295 |
| linux | linux_kernel | >= 4.10 < 4.14.258 | 4.14.258 |
| linux | linux_kernel | >= 4.15 < 4.19.221 | 4.19.221 |
| linux | linux_kernel | >= 4.20 < 5.4.165 | 5.4.165 |
| linux | linux_kernel | >= 4.5 < 4.9.293 | 4.9.293 |
| linux | linux_kernel | >= 5.11 < 5.15.8 | 5.15.8 |
| linux | linux_kernel | >= 5.5 < 5.10.85 | 5.10.85 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done
vendor_redhat·2024-05-24·CVSS 5.5
CVE-2021-47518 [MEDIUM] CWE-476 kernel: nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done
kernel: nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done
In the Linux kernel, the following vulnerability has been resolved:
nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done
The done() netlink callback nfc_genl_dump_ses_done() should check if
received argument is non-NULL, because its allocation could fail earlier
in dumpit() (nfc_genl_dump_ses()).
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterprise Linux 9) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux
Debian
CVE-2021-47518: linux - In the Linux kernel, the following vulnerability has been resolved: nfc: fix po...
vendor_debian·2021·CVSS 5.5
CVE-2021-47518 [MEDIUM] CVE-2021-47518: linux - In the Linux kernel, the following vulnerability has been resolved: nfc: fix po...
In the Linux kernel, the following vulnerability has been resolved: nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done The done() netlink callback nfc_genl_dump_ses_done() should check if received argument is non-NULL, because its allocation could fail earlier in dumpit() (nfc_genl_dump_ses()).
Scope: local
bookworm: resolved (fixed in 5.15.15-1)
bullseye: resolved (fixed in 5.10.92-1)
forky: resolved (fixed in 5.15.15-1)
sid: resolved (fixed in 5.15.15-1)
trixie: resolved (fixed in 5.15.15-1)
OSV
linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities
osv·2024-08-21·CVSS 5.5
CVE-2024-22099 [MEDIUM] linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities
linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities
Yuxuan Hu discovered that the Bluetooth RFCOMM protocol driver in the Linux
Kernel contained a race condition, leading to a NULL pointer dereference.
An attacker could possibly use this to cause a denial of service (system
crash). (CVE-2024-22099)
It was discovered that a race condition existed in the Bluetooth subsystem
in the Linux kernel, leading to a null pointer dereference vulnerability. A
privileged local attacker could use this to possibly cause a denial of
service (system crash). (CVE-2024-24860)
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- SuperH RISC architecture;
- User-Mode Linu
OSV
CVE-2021-47518: In the Linux kernel, the following vulnerability has been resolved: nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done The done() netlink
osv·2024-05-24·CVSS 5.5
CVE-2021-47518 [MEDIUM] CVE-2021-47518: In the Linux kernel, the following vulnerability has been resolved: nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done The done() netlink
In the Linux kernel, the following vulnerability has been resolved: nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done The done() netlink callback nfc_genl_dump_ses_done() should check if received argument is non-NULL, because its allocation could fail earlier in dumpit() (nfc_genl_dump_ses()).
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/3b861a40325eac9c4c13b6c53874ad90617e944dhttps://git.kernel.org/stable/c/48fcd08fdbe05e35b650a252ec2a2d96057a1c7ahttps://git.kernel.org/stable/c/4cd8371a234d051f9c9557fcbb1f8c523b1c0d10https://git.kernel.org/stable/c/69bb79a8f5bb9f436b6f1434ca9742591b7bbe18https://git.kernel.org/stable/c/811a7576747760bcaf60502f096d1e6e91d566fahttps://git.kernel.org/stable/c/83ea620a1be840bf05089a5061fb8323ca42f38chttps://git.kernel.org/stable/c/87cdb8789c38e44ae5454aafe277997c950d00edhttps://git.kernel.org/stable/c/fae9705d281091254d4a81fa2da9d22346097dcahttps://git.kernel.org/stable/c/3b861a40325eac9c4c13b6c53874ad90617e944dhttps://git.kernel.org/stable/c/48fcd08fdbe05e35b650a252ec2a2d96057a1c7ahttps://git.kernel.org/stable/c/4cd8371a234d051f9c9557fcbb1f8c523b1c0d10https://git.kernel.org/stable/c/69bb79a8f5bb9f436b6f1434ca9742591b7bbe18https://git.kernel.org/stable/c/811a7576747760bcaf60502f096d1e6e91d566fahttps://git.kernel.org/stable/c/83ea620a1be840bf05089a5061fb8323ca42f38chttps://git.kernel.org/stable/c/87cdb8789c38e44ae5454aafe277997c950d00edhttps://git.kernel.org/stable/c/fae9705d281091254d4a81fa2da9d22346097dca
2024-05-24
Published