In the Linux kernel, the following vulnerability has been resolved:
udf: Fix NULL pointer dereference in udf_symlink function
In function udf_symlink, epos.bh is assigned with the value returned
by udf_tgetblk. The function udf_tgetblk is defined in udf/misc.c
and returns the value of sb_getblk function that could be NULL.
Then, epos.bh is used without any check, causing a possible
NULL pointer dereference when sb_getblk fails.
This fix adds a check to validate the value of epos.bh.
Metrics
Affected Vendors & Products
References
History
Tue, 24 Dec 2024 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Linux
Linux linux Kernel |
|
CPEs | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
Vendors & Products |
Linux
Linux linux Kernel |
MITRE
Status: PUBLISHED
Assigner: Linux
Published: 2024-05-21T14:35:57.122Z
Updated: 2024-12-19T07:40:18.175Z
Reserved: 2024-05-21T14:28:16.986Z
Link: CVE-2021-47353
Vulnrichment
Updated: 2024-08-04T05:32:08.447Z
NVD
Status : Analyzed
Published: 2024-05-21T15:15:21.693
Modified: 2024-12-24T16:11:59.943
Link: CVE-2021-47353
Redhat