5.5
CVE-2021-47502
- EPSS 0.25%
- Veröffentlicht 24.05.2024 15:15:10
- Zuletzt bearbeitet 04.08.2026 10:17:06
- Erkennungen
ASoC: codecs: wcd934x: handle channel mappping list correctly
In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: wcd934x: handle channel mappping list correctly Currently each channel is added as list to dai channel list, however there is danger of adding same channel to multiple dai channel list which endups corrupting the other list where its already added. This patch ensures that the channel is actually free before adding to the dai channel list and also ensures that the channel is on the list before deleting it. This check was missing previously, and we did not hit this issue as we were testing very simple usecases with sequence of amixer commands.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 5.6 < 5.10.85
Linux ≫ Linux Kernel Version >= 5.11 < 5.15.8
Linux ≫ Linux Kernel Version 5.16 Update rc1
Linux ≫ Linux Kernel Version 5.16 Update rc2
Linux ≫ Linux Kernel Version 5.16 Update rc3
Linux ≫ Linux Kernel Version 5.16 Update rc4
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.25% | 0.158 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
| 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
https://git.kernel.org/stable/c/1089dac26c6b4b833323ae6c0ceab29fb30ede72
https://git.kernel.org/stable/c/23ba28616d3063bd4c4953598ed5e439ca891101
https://git.kernel.org/stable/c/339ffb5b56005582aacc860524d2d208604049d1