4
CVE-2021-47096
- EPSS 0.21%
- Veröffentlicht 04.03.2024 18:15:07
- Zuletzt bearbeitet 08.04.2025 15:03:08
- Erkennungen
ALSA: rawmidi - fix the uninitalized user_pversion
In the Linux kernel, the following vulnerability has been resolved: ALSA: rawmidi - fix the uninitalized user_pversion The user_pversion was uninitialized for the user space file structure in the open function, because the file private structure use kmalloc for the allocation. The kernel ALSA sequencer code clears the file structure, so no additional fixes are required. BugLink: https://github.com/alsa-project/alsa-lib/issues/178
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 5.15 < 5.15.12
Linux ≫ Linux Kernel Version 5.16 Update rc1
Linux ≫ Linux Kernel Version 5.16 Update rc2
Linux ≫ Linux Kernel Version 5.16 Update rc3
Linux ≫ Linux Kernel Version 5.16 Update rc4
Linux ≫ Linux Kernel Version 5.16 Update rc5
Linux ≫ Linux Kernel Version 5.16 Update rc6
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.21% | 0.114 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| CISA-ADP | 4 | 2.5 | 1.4 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
CWE-908 Use of Uninitialized Resource
The product uses or accesses a resource that has not been initialized.
https://git.kernel.org/stable/c/39a8fc4971a00d22536aeb7d446ee4a97810611b
https://git.kernel.org/stable/c/b398fcbe4de1e1100867fdb6f447c6fbc8fe7085