Description
In the Linux kernel, the following vulnerability has been resolved:
udf: Fix NULL pointer dereference in udf_symlink function
In function udf_symlink, epos.bh is assigned with the value returned
by udf_tgetblk. The function udf_tgetblk is defined in udf/misc.c
and returns the value of sb_getblk function that could be NULL.
Then, epos.bh is used without any check, causing a possible
NULL pointer dereference when sb_getblk fails.
This fix adds a check to validate the value of epos.bh.
udf: Fix NULL pointer dereference in udf_symlink function
In function udf_symlink, epos.bh is assigned with the value returned
by udf_tgetblk. The function udf_tgetblk is defined in udf/misc.c
and returns the value of sb_getblk function that could be NULL.
Then, epos.bh is used without any check, causing a possible
NULL pointer dereference when sb_getblk fails.
This fix adds a check to validate the value of epos.bh.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Ubuntu USN |
USN-7554-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-7554-2 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-7554-3 | Linux kernel (FIPS) vulnerabilities |
References
History
Tue, 24 Dec 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Linux
Linux linux Kernel |
|
| CPEs | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Linux
Linux linux Kernel |
Status: PUBLISHED
Assigner: Linux
Published:
Updated: 2026-05-11T13:53:03.838Z
Reserved: 2024-05-21T14:28:16.986Z
Link: CVE-2021-47353
Updated: 2024-08-04T05:32:08.447Z
Status : Analyzed
Published: 2024-05-21T15:15:21.693
Modified: 2024-12-24T16:11:59.943
Link: CVE-2021-47353
OpenCVE Enrichment
No data.
Weaknesses
Ubuntu USN