5.5
CVE-2021-47437
- EPSS 0.15%
- Veröffentlicht 22.05.2024 07:15:08
- Zuletzt bearbeitet 10.01.2025 18:15:20
- Erkennungen
iio: adis16475: fix deadlock on frequency set
In the Linux kernel, the following vulnerability has been resolved:
iio: adis16475: fix deadlock on frequency set
With commit 39c024b51b560
("iio: adis16475: improve sync scale mode handling"), two deadlocks were
introduced:
1) The call to 'adis_write_reg_16()' was not changed to it's unlocked
version.
2) The lock was not being released on the success path of the function.
This change fixes both these issues.Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 5.13 < 5.14.14
Linux ≫ Linux Kernel Version 5.15 Update rc1
Linux ≫ Linux Kernel Version 5.15 Update rc2
Linux ≫ Linux Kernel Version 5.15 Update rc3
Linux ≫ Linux Kernel Version 5.15 Update rc4
Linux ≫ Linux Kernel Version 5.15 Update rc5
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.15% | 0.044 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
CWE-667 Improper Locking
The product does not properly acquire or release a lock on a resource, leading to unexpected resource state changes and behaviors.
https://git.kernel.org/stable/c/04e03b907022ebd876f422f17efcc2c6cc934dc6
https://git.kernel.org/stable/c/9da1b86865ab4376408c58cd9fec332c8bdb5c73