CVE-2021-47257
high
CVSS v3
—
VIR risk
8.0
Description
In the Linux kernel, the following vulnerability has been resolved: net: ieee802154: fix null deref in parse dev addr Fix a logic error that could result in a null deref if the user sets the mode incorrectly for the given addr type.
Predictions
Exploit likelihood
20%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No vendor mitigations ingested yet for this CVE. The mitigation-content worker queues fetches as references arrive — check back in a few minutes, or see the references list below.
OS impact
| OS | Version | Status | Fixed in |
|---|---|---|---|
| rocky | 8 | fixed | |
| sles | affected | | |
| debian | bookworm | fixed | 5.10.46-1 |
| debian | bullseye | fixed | 5.10.46-1 |
| debian | forky | fixed | 5.10.46-1 |
| debian | sid | fixed | 5.10.46-1 |
| debian | trixie | fixed | 5.10.46-1 |
| almalinux | 8 | fixed | kernel-rt-debug-4.18.0-553.16.1.rt7.357.el8_10.x86_64.rpm |
References
- https://errata.rockylinux.org/RXSA-2024:5101
- https://errata.rockylinux.org/RLSA-2024:5102
- https://errata.rockylinux.org/RLSA-2024:5101
- https://www.suse.com/security/cve/CVE-2021-47257.html
- https://security-tracker.debian.org/tracker/CVE-2021-47257
- https://access.redhat.com/errata/RHSA-2024:5102
- https://bugzilla.redhat.com/2263879
- https://bugzilla.redhat.com/2265645
- https://bugzilla.redhat.com/2265797
- https://bugzilla.redhat.com/2266341
- https://bugzilla.redhat.com/2266347
- https://bugzilla.redhat.com/2266497
- https://bugzilla.redhat.com/2267787
- https://bugzilla.redhat.com/2268118
- https://bugzilla.redhat.com/2269070
- https://bugzilla.redhat.com/2269211
- https://bugzilla.redhat.com/2270084
- https://bugzilla.redhat.com/2270100
- https://bugzilla.redhat.com/2271686
- https://bugzilla.redhat.com/2271688
- https://bugzilla.redhat.com/2272782
- https://bugzilla.redhat.com/2272795
- https://bugzilla.redhat.com/2273109
- https://bugzilla.redhat.com/2273174
- https://bugzilla.redhat.com/2273236
💬 Discuss CVE-2021-47257 on VIR Community →
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.