5.5
CVE-2021-47184
- EPSS 0.01%
- Published 10.04.2024 19:15:47
- Last modified 14.01.2025 16:41:58
- Source 416baaa9-dc9f-4396-8d5f-8c081f
- CVE-Watchlists
- Open
In the Linux kernel, the following vulnerability has been resolved: i40e: Fix NULL ptr dereference on VSI filter sync Remove the reason of null pointer dereference in sync VSI filters. Added new I40E_VSI_RELEASING flag to signalize deleting and releasing of VSI resources to sync this thread with sync filters subtask. Without this patch it is possible to start update the VSI filter list after VSI is removed, that's causing a kernel oops.
Data is provided by the National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 3.12 < 4.14.256
Linux ≫ Linux Kernel Version >= 4.15 < 4.19.218
Linux ≫ Linux Kernel Version >= 4.20 < 5.4.162
Linux ≫ Linux Kernel Version >= 5.5 < 5.10.82
Linux ≫ Linux Kernel Version >= 5.11 < 5.15.5
Linux ≫ Linux Kernel Version5.16 Updaterc1
| Type | Source | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.01% | 0.005 |
| Source | Base Score | Exploit Score | Impact Score | Vector string |
|---|---|---|---|---|
| nvd@nist.gov | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
CWE-476 NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.