PT-2024-11137 · Linux+1 · Linux Kernel+1

James Smart

·

Published

2021-03-04

·

Updated

2024-12-06

·

CVE-2021-47045

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to a null pointer dereference in the lpfc prep els iocb() function. This can occur when lpfc issue els plogi() is called with a did for which no matching ndlp is found, resulting in a null pointer to a lpfc nodelist structure. The fix involves returning an error status if no valid ndlp is found and updating comments regarding ndlp reference counting.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-07257
CVE-2021-47045
OPENSUSE-SU-2024_1489-1
SUSE-SU-2024:1454-1
SUSE-SU-2024:1465-1
SUSE-SU-2024:1489-1
SUSE-SU-2024:1643-1
SUSE-SU-2024:1646-1
SUSE-SU-2024:1870-1

Affected Products

Linux Kernel
Suse