CVE-2021-47652 Details
Description
In the Linux kernel, the following vulnerability has been resolved: video: fbdev: smscufx: Fix null-ptr-deref in ufx_usb_probe() I got a null-ptr-deref report: BUG: kernel NULL pointer dereference, address: 0000000000000000 ... RIP: 0010:fb_destroy_modelist+0x38/0x100 ... Call Trace: ufx_usb_probe.cold+0x2b5/0xac1 [smscufx] usb_probe_interface+0x1aa/0x3c0 [usbcore] really_probe+0x167/0x460 ... ret_from_fork+0x1f/0x30 If fb_alloc_cmap() fails in ufx_usb_probe(), fb_destroy_modelist() will be called to destroy modelist in the error handling path. But modelist has not been initialized yet, so it will result in null-ptr-deref. Initialize modelist before calling fb_alloc_cmap() to fix this bug.
A null pointer dereference vulnerability has been identified in the Linux kernel's video framebuffer device (fbdev) subsystem, specifically within the smscufx driver. The issue arises in the 'ufx_usb_probe' function, where the framebuffer color map allocation can fail. If this happens, the error handling routine attempts to destroy the framebuffer modelist, which has not been properly initialized, leading to a null pointer dereference.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Oct 1, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://git.kernel.org/stable/c/0fd28daec73525382e5c992db8743bf76e42cd5c | kernel.org | Patch |
| https://git.kernel.org/stable/c/1791f487f877a9e83d81c8677bd3e7b259e7cb27 | kernel.org | Patch |
| https://git.kernel.org/stable/c/64ec3e678d76419f207b9cdd338dda438ca10b1c | kernel.org | Patch |
| https://git.kernel.org/stable/c/9280ef235b05e8f19f8bc6d547b992f0a0ef398d | kernel.org | Patch |
| https://git.kernel.org/stable/c/c420b540db4b5d69de0a36d8b9d9a6a79a04f05a | kernel.org | Patch |
| https://git.kernel.org/stable/c/d1b6a1f0c23b7164250479bf92e2893291dca539 | kernel.org | Patch |
| https://git.kernel.org/stable/c/d396c651e2b508b6179bb678cc029f3becbf5170 | kernel.org | Patch |
| https://git.kernel.org/stable/c/da8b269cc0a2526ebeaccbe2484c999eb0f822cf | kernel.org | Patch |
| https://git.kernel.org/stable/c/dd3a6cc7385b89ec2303f39dfc3bafa4e24cec4b | kernel.org | Patch |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-476 | NULL Pointer Dereference | [email protected] |
| CWE-476 | NULL Pointer Dereference | CISA-ADP |
Affected Products
| Product | Versions |
|---|---|
| linux linux kernel | >= 3.2, < 4.9.311 >= 4.10, < 4.14.276 >= 4.15, < 4.19.238 >= 4.20, < 5.4.189 >= 5.5, < 5.10.110 >= 5.11, < 5.15.33 >= 5.16, < 5.16.19 >= 5.17, < 5.17.2 |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | kernel.org |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Oct 1, 2025 | CVE Modified | CISA-ADP |
| Mar 18, 2025 | Initial Analysis | [email protected] |
| Feb 26, 2025 | New CVE Received | kernel.org |