PT-2024-11276 · Linux+2 · Linux Kernel+2

Maciej Żenczykowski

·

Published

2021-06-09

·

Updated

2024-12-24

·

CVE-2021-47270

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to a null pointer dereference in the Linux kernel's USB gadget functionality when using 10gbps cabling. This is avoided by reusing the 5gbps config for 10gbps, which prevents the null pointer dereference in functions such as f ecm, f eem, f hid, f loopback, f printer, f rndis, f serial, f sourcesink, f subset, and f tcm.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-07383
CVE-2021-47270
OESA-2024-1835
OPENSUSE-SU-2024_2185-1
SUSE-SU-2024:2010-1
SUSE-SU-2024:2183-1
SUSE-SU-2024:2185-1
SUSE-SU-2024:2360-1
SUSE-SU-2024:2381-1
SUSE-SU-2024:2561-1

Affected Products

Astra Linux
Linux Kernel
Suse