CVE-2021-47316

MEDIUM

Linux Kernel 5.13-5.13.3 - NULL Pointer Dereference in nfs3svc_encode_getaclres

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix NULL dereference in nfs3svc_encode_getaclres In error cases the dentry may be NULL. Before 20798dfe249a, the encoder also checked dentry and d_really_is_positive(dentry), but that looks like overkill to me--zero status should be enough to guarantee a positive dentry. This isn't the first time we've seen an error-case NULL dereference hidden in the initialization of a local variable in an xdr encoder. But I went back through the other recent rewrites and didn't spot any similar bugs.

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 14.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (8)
Linux/Linux < 5.13
Linux/Linux 20798dfe249a01ad1b12eec7dbc572db5003244a - 650e6f383a6eb40f7c0a010982a74ab4b6893870
Linux/Linux 20798dfe249a01ad1b12eec7dbc572db5003244a - ab1016d39cc052064e32f25ad18ef8767a0ee3b8
Linux/Linux 5.13
Linux/Linux 5.13.4 - 5.13.*
Linux/Linux 5.14
Linux/Linux d505e66191072748620fc0af038cea4e4da0e3cd - e79057d15d96ef19de4de6d7e479bae3d58a2a8d
linux/linux_kernel 5.13 - 5.13.4
Published May 21, 2024
Tracked Since Feb 18, 2026