CVE Database
/

CVE-2021-47385

Back to search

CVE-2021-47385

Published: May 21, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: hwmon: (w83792d) Fix NULL pointer dereference by removing unnecessary structure field If driver read val value sufficient for (val & 0x08) && (!(val & 0x80)) && ((val & 0x7) == ((val >> 4) & 0x7)) from device then Null pointer dereference occurs. (It is possible if tmp = 0b0xyz1xyz, where same literals mean same numbers) Also lm75[] does not serve a purpose anymore after switching to devm_i2c_new_dummy_device() in w83791d_detect_subclients(). The patch fixes possible NULL pointer dereference by removing lm75[]. Found by Linux Driver Verification project (linuxtesting.org). [groeck: Dropped unnecessary continuation lines, fixed multipline alignment]

VendorProductVersions

Linux

Linux

affected
f64211151db4269341ee6432ce832ae3756725ad - < 200ced5ba724d8bbf29dfac4ed1e17a39ccaccd1
affected
f64211151db4269341ee6432ce832ae3756725ad - < 1499bb2c3a87a2efea0065adab2bd66badee61c3
affected
f64211151db4269341ee6432ce832ae3756725ad - < 24af1fe376e22c42238a4a604d31e46c486876c3
affected
f64211151db4269341ee6432ce832ae3756725ad - < 0f36b88173f028e372668ae040ab1a496834d278

Linux

Linux

affected
5.4
unaffected
0 - < 5.4
unaffected
5.4.151 - <= 5.4.*
unaffected
5.10.71 - <= 5.10.*
unaffected
5.14.10 - <= 5.14.*

+1 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now