SB20240531407 - NULL pointer dereference in Linux kernel sched
Published: May 31, 2024 Updated: May 14, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) NULL pointer dereference (CVE-ID: CVE-2021-47418)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to NULL pointer dereference within the fifo_set_limit() function in net/sched/sch_fifo.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/0dd7ddc462b9c2d31eb5a9926a2cc63eaa3e9f52
- https://git.kernel.org/stable/c/08d7056e8e250fd2e67dbea5be5fdecdd75bf6b4
- https://git.kernel.org/stable/c/26af64d71b6277841285fa40e3f7164a378dfda9
- https://git.kernel.org/stable/c/d07098f45be868a9cdce6c616563c36c64dbbd87
- https://git.kernel.org/stable/c/c951a3be5e8803e93bb49a0aca0d30457d3c1b67
- https://git.kernel.org/stable/c/acff2d182c0768a713cee77442caeb07668bd68f
- https://git.kernel.org/stable/c/fb58cd7991747b5e0b110c98c922d7b0e47a1f14
- https://git.kernel.org/stable/c/560ee196fe9e5037e5015e2cdb14b3aecb1cd7dc
- https://mirrors.edge.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.251
- https://mirrors.edge.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.211
- https://mirrors.edge.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.4.289
- https://mirrors.edge.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.287
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.73
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.14.12
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.4.153