CVE-2021-47037

MEDIUM

Linux Kernel 5.10-5.11.21 - Denial of Service via Q6AFE-Clocks Driver Reprobe

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: ASoC: q6afe-clocks: fix reprobing of the driver Q6afe-clocks driver can get reprobed. For example if the APR services are restarted after the firmware crash. However currently Q6afe-clocks driver will oops because hw.init will get cleared during first _probe call. Rewrite the driver to fill the clock data at runtime rather than using big static array of clocks.

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 15.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (11)
Linux/Linux < 5.10
Linux/Linux 5.10
Linux/Linux 5.10.238 - 5.10.*
Linux/Linux 5.11.21 - 5.11.*
Linux/Linux 5.12.4 - 5.12.*
Linux/Linux 5.13
Linux/Linux 520a1c396d1966b64884d8e0176a580150d5a09e - 2202e87fc19440cecfd4f7b4f60a7d48bc2e236c
Linux/Linux 520a1c396d1966b64884d8e0176a580150d5a09e - 62413972f5266568848a36fd15160397b211fa74
Linux/Linux 520a1c396d1966b64884d8e0176a580150d5a09e - 6893df3753beafa5f7351228a9dd8157a57d7492
Linux/Linux 520a1c396d1966b64884d8e0176a580150d5a09e - 96fadf7e8ff49fdb74754801228942b67c3eeebd
... and 1 more
Published Feb 28, 2024
Tracked Since Feb 18, 2026