Executive Summary

Informations
Name CVE-2021-47652 First vendor Publication 2025-02-26
Vendor Cve Last vendor Modification 2025-03-18

Security-Database Scoring CVSS v3

Cvss vector : CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Overall CVSS Score 5.5
Base Score 5.5 Environmental Score 5.5
impact SubScore 3.6 Temporal Score 5.5
Exploitabality Sub Score 1.8
 
Attack Vector Local Attack Complexity Low
Privileges Required Low User Interaction None
Scope Unchanged Confidentiality Impact None
Integrity Impact None Availability Impact High
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

In the Linux kernel, the following vulnerability has been resolved:

video: fbdev: smscufx: Fix null-ptr-deref in ufx_usb_probe()

I got a null-ptr-deref report:

BUG: kernel NULL pointer dereference, address: 0000000000000000 ... RIP: 0010:fb_destroy_modelist+0x38/0x100 ... Call Trace:
ufx_usb_probe.cold+0x2b5/0xac1 [smscufx]
usb_probe_interface+0x1aa/0x3c0 [usbcore]
really_probe+0x167/0x460 ...
ret_from_fork+0x1f/0x30

If fb_alloc_cmap() fails in ufx_usb_probe(), fb_destroy_modelist() will be called to destroy modelist in the error handling path. But modelist has not been initialized yet, so it will result in null-ptr-deref.

Initialize modelist before calling fb_alloc_cmap() to fix this bug.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-47652

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-476 NULL Pointer Dereference

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 7
Os 3527

Sources (Detail)

https://git.kernel.org/stable/c/0fd28daec73525382e5c992db8743bf76e42cd5c
https://git.kernel.org/stable/c/1791f487f877a9e83d81c8677bd3e7b259e7cb27
https://git.kernel.org/stable/c/64ec3e678d76419f207b9cdd338dda438ca10b1c
https://git.kernel.org/stable/c/9280ef235b05e8f19f8bc6d547b992f0a0ef398d
https://git.kernel.org/stable/c/c420b540db4b5d69de0a36d8b9d9a6a79a04f05a
https://git.kernel.org/stable/c/d1b6a1f0c23b7164250479bf92e2893291dca539
https://git.kernel.org/stable/c/d396c651e2b508b6179bb678cc029f3becbf5170
https://git.kernel.org/stable/c/da8b269cc0a2526ebeaccbe2484c999eb0f822cf
https://git.kernel.org/stable/c/dd3a6cc7385b89ec2303f39dfc3bafa4e24cec4b
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
Date Informations
2025-06-26 01:53:00
  • Multiple Updates
2025-06-25 12:17:13
  • Multiple Updates
2025-06-24 01:57:28
  • Multiple Updates
2025-05-27 01:52:35
  • Multiple Updates
2025-03-29 02:58:11
  • Multiple Updates
2025-03-28 13:28:35
  • Multiple Updates
2025-03-28 02:42:58
  • Multiple Updates
2025-03-18 21:21:31
  • Multiple Updates
2025-02-26 17:20:34
  • First insertion