CVE-2021-47184

MEDIUM

Linux Kernel 3.12-4.14.256 - NULL Pointer Dereference in VSI Filter Sync

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: i40e: Fix NULL ptr dereference on VSI filter sync Remove the reason of null pointer dereference in sync VSI filters. Added new I40E_VSI_RELEASING flag to signalize deleting and releasing of VSI resources to sync this thread with sync filters subtask. Without this patch it is possible to start update the VSI filter list after VSI is removed, that's causing a kernel oops.

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 14.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (16)
Linux/Linux < 3.12
Linux/Linux 3.12
Linux/Linux 4.14.256 - 4.14.*
Linux/Linux 4.19.218 - 4.19.*
Linux/Linux 41c445ff0f482bb6e6b72dcee9e598e20575f743 - 37d9e304acd903a445df8208b8a13d707902dea6
Linux/Linux 41c445ff0f482bb6e6b72dcee9e598e20575f743 - 78f2a9e831f9610e3655a0be5e675e1aa2472089
Linux/Linux 41c445ff0f482bb6e6b72dcee9e598e20575f743 - 87c421ab4a43433cb009fea44bbbc77f46913e1d
Linux/Linux 41c445ff0f482bb6e6b72dcee9e598e20575f743 - c30162da91327e4cdf7cd03079f096bb3654738c
Linux/Linux 41c445ff0f482bb6e6b72dcee9e598e20575f743 - e91e8427a1e1633a0261e3bb0201c836ac5b3890
Linux/Linux 41c445ff0f482bb6e6b72dcee9e598e20575f743 - f866513ead4370402428ef724b03c3312295c178
... and 6 more
Published Apr 10, 2024
Tracked Since Feb 18, 2026