CVE-2021-47217

MEDIUM

Linux Kernel 4.16 - NULL Pointer Dereference in set_hv_tscchange_cb()

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: x86/hyperv: Fix NULL deref in set_hv_tscchange_cb() if Hyper-V setup fails Check for a valid hv_vp_index array prior to derefencing hv_vp_index when setting Hyper-V's TSC change callback. If Hyper-V setup failed in hyperv_init(), the kernel will still report that it's running under Hyper-V, but will have silently disabled nearly all functionality. BUG: kernel NULL pointer dereference, address: 0000000000000010 #PF: supervisor read access in kernel mode #PF: error_code(0x0000) - not-present page PGD 0 P4D 0 Oops: 0000 [#1] SMP CPU: 4 PID: 1 Comm: swapper/0 Not tainted 5.15.0-rc2+ #75 Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 0.0.0 02/06/2015 RIP: 0010:set_hv_tscchange_cb+0x15/0xa0 Code: <8b> 04 82 8b 15 12 17 85 01 48 c1 e0 20 48 0d ee 00 01 00 f6 c6 08 ... Call Trace: kvm_arch_init+0x17c/0x280 kvm_init+0x31/0x330 vmx_init+0xba/0x13a do_one_initcall+0x41/0x1c0 kernel_init_freeable+0x1f2/0x23b kernel_init+0x16/0x120 ret_from_fork+0x22/0x30

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 14.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (14)
Linux/Linux < 4.16
Linux/Linux 4.16
Linux/Linux 4.19.218 - 4.19.*
Linux/Linux 5.10.82 - 5.10.*
Linux/Linux 5.15.5 - 5.15.*
Linux/Linux 5.16
Linux/Linux 5.4.162 - 5.4.*
Linux/Linux 93286261de1b46339aa27cd4c639b21778f6cade - 8823ea27fff6084bbb4bc71d15378fae0220b1d8
Linux/Linux 93286261de1b46339aa27cd4c639b21778f6cade - 9c177eee116cf888276d3748cb176e72562cfd5c
Linux/Linux 93286261de1b46339aa27cd4c639b21778f6cade - b0e44dfb4e4c699cca33ede431b8d127e6e8d661
... and 4 more
Published Apr 10, 2024
Tracked Since Feb 18, 2026