CVE-2021-47645

Modified
Published: 26 Feb 2025, 01:54
Last modified:11 May 2026, 13:58

Vulnerability Summary

Overall Risk (default)
low
22/100
CVSS Score
5.5 MEDIUM
v3.1 (cve.org)
EPSS Score
0.01% LOW
0% probability -0.01%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

26 Feb 2025, 01:54
Published
Vulnerability first disclosed
11 May 2026, 13:58
Last Modified
Vulnerability information updated

Description

In the Linux kernel, the following vulnerability has been resolved: media: staging: media: zoran: calculate the right buffer number for zoran_reap_stat_com On the case tmp_dcim=1, the index of buffer is miscalculated. This generate a NULL pointer dereference later. So let's fix the calcul and add a check to prevent this to reappear.

CVSS Metrics

  • v3.1MEDIUMScore: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

EPSS Trends

Current EPSS score: 0.01% Percentile: 3%

Techniques & Countermeasures

  • CWE-476NULL Pointer Dereference

    The product dereferences a pointer that it expects to be valid but is NULL.

Affected Systems

  • linuxlinux

    ≥ 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < 8dce4b265a5357731058f69645840dabc718c687 | ≥ 61c3b19f7b9eb7c7838fd35f86566230fefd6550, < bafec1a6ba4b187a7fcdcfce0faebdc623d4ef8e | ≥ 61c3b19f7b9eb7c7838fd35f86566230fefd6550, < 7e76f3ed7ab2ae026c6ef9cc23096a7554af8c52 | ≥ 61c3b19f7b9eb7c7838fd35f86566230fefd6550, < 20db2ed1e2f9fcd417fa67853e5154f0c2537d6c | ≥ 61c3b19f7b9eb7c7838fd35f86566230fefd6550, < 20811bbe685ca3eddd34b0c750860427d7030910 | ≥ 61c3b19f7b9eb7c7838fd35f86566230fefd6550, < e3b86f4e558cea9eed71d894df2f19b10d60a207 | 2.6.12 | 5.10

  • linuxlinux_kernel

    < 5.10.110 | ≥ 5.11, < 5.15.33 | ≥ 5.16, < 5.16.19 | ≥ 5.17, < 5.17.2

References (6)