CVE-2021-47050

MEDIUM

Linux Kernel - NULL Pointer Dereference in Renesas RPC-IF Resource Handling

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: memory: renesas-rpc-if: fix possible NULL pointer dereference of resource The platform_get_resource_byname() can return NULL which would be immediately dereferenced by resource_size(). Instead dereference it after validating the resource. Addresses-Coverity: Dereference null return value

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 14.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (11)
Linux/Linux < 5.9
Linux/Linux 5.10.37 - 5.10.*
Linux/Linux 5.11.21 - 5.11.*
Linux/Linux 5.12.4 - 5.12.*
Linux/Linux 5.13
Linux/Linux 5.9
Linux/Linux ca7d8b980b67f133317525c4273e144116ee1ae5 - 59e27d7c94aa02da039b000d33c304c179395801
Linux/Linux ca7d8b980b67f133317525c4273e144116ee1ae5 - 71bcc1b4a1743534d8abdcb57ff912e6bc390438
Linux/Linux ca7d8b980b67f133317525c4273e144116ee1ae5 - a74cb41af7dbe019e4096171f8bc641c7ce910ad
Linux/Linux ca7d8b980b67f133317525c4273e144116ee1ae5 - e16acc3a37f09e18835dc5d8014942c2ef6ca957
... and 1 more
Published Feb 28, 2024
Tracked Since Feb 18, 2026