CVE-2021-47211
Advisory lineage Upstream: 0 Downstream: 27
Analyzed
Published: 10 Apr 2024, 19:01
Last modified:19 Jun 2026, 11:57
Vulnerability Summary
Overall Risk (default)
low
22/100 CVSS Score
5.5 MEDIUM
v3.1 (nvd)
EPSS Score
0.22% LOW
0% probability +0.22%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
10 Apr 2024, 19:01
Published
Vulnerability first disclosed
19 Jun 2026, 11:57
Last Modified
Vulnerability information updated
Description
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: fix null pointer dereference on pointer cs_desc The pointer cs_desc return from snd_usb_find_clock_source could be null, so there is a potential null pointer dereference issue. Fix this by adding a null check before dereference.
CVSS Metrics
- v3.1•MEDIUM•Score: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Trends
Current EPSS score: 0.22%• Percentile: 13%
Techniques & Countermeasures
- CWE-476•NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.
Affected Systems
- linux•linux
≥ 1dc669fed61a4ec4270a89e5fb3535802cc45668, < 3455984b16eeb6914caf8b59498ef24fcc1f0a78 | ≥ 1dc669fed61a4ec4270a89e5fb3535802cc45668, < 58fa50de595f152900594c28ec9915c169643739 | ≥ 1dc669fed61a4ec4270a89e5fb3535802cc45668, < b97053df0f04747c3c1e021ecbe99db675342954 | 3.10
- linux•linux kernel
< 5.15.5