CVE Database
/

CVE-2021-47384

Back to search

CVE-2021-47384

Published: May 21, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: hwmon: (w83793) Fix NULL pointer dereference by removing unnecessary structure field If driver read tmp value sufficient for (tmp & 0x08) && (!(tmp & 0x80)) && ((tmp & 0x7) == ((tmp >> 4) & 0x7)) from device then Null pointer dereference occurs. (It is possible if tmp = 0b0xyz1xyz, where same literals mean same numbers) Also lm75[] does not serve a purpose anymore after switching to devm_i2c_new_dummy_device() in w83791d_detect_subclients(). The patch fixes possible NULL pointer dereference by removing lm75[]. Found by Linux Driver Verification project (linuxtesting.org). [groeck: Dropped unnecessary continuation lines, fixed multi-line alignments]

VendorProductVersions

Linux

Linux

affected
cf48d17623281c2b3185030ed23f148bd47e15de - < 6cb01fe630eaffc5a2c3f7364436caddba286623
affected
cf48d17623281c2b3185030ed23f148bd47e15de - < 7c4fd5de39f273626a2b0f3a446d2cc85cd47616
affected
cf48d17623281c2b3185030ed23f148bd47e15de - < 746011193f44f97f8784edcf8327c587946745fc
affected
cf48d17623281c2b3185030ed23f148bd47e15de - < dd4d747ef05addab887dc8ff0d6ab9860bbcd783

Linux

Linux

affected
5.4
unaffected
0 - < 5.4
unaffected
5.4.151 - <= 5.4.*
unaffected
5.10.71 - <= 5.10.*
unaffected
5.14.10 - <= 5.14.*

+1 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now