PT-2024-11184 · Linux · Linux Kernel

Published

2021-03-24

·

Updated

2025-02-27

·

CVE-2021-47134

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue occurs when no valid fdt is found, causing initial boot params to be null. This happens when setup arch() invokes efi init() and then efi get fdt params(). To prevent further fdt processing, it should be stopped when no valid fdt is found. This problem was encountered on risc-v.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-03653
CVE-2021-47134

Affected Products

Linux Kernel