Lucene search

K
nvd416baaa9-dc9f-4396-8d5f-8c081fb06d67NVD:CVE-2021-47571
HistoryMay 24, 2024 - 3:15 p.m.

CVE-2021-47571

2024-05-2415:15:22
CWE-416
416baaa9-dc9f-4396-8d5f-8c081fb06d67
web.nvd.nist.gov
6
staging rtl8192e use after free

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

6.6

Confidence

High

EPSS

0

Percentile

5.1%

In the Linux kernel, the following vulnerability has been resolved:

staging: rtl8192e: Fix use after free in _rtl92e_pci_disconnect()

The free_rtllib() function frees the “dev” pointer so there is use
after free on the next line. Re-arrange things to avoid that.

Affected configurations

Nvd
Node
linuxlinux_kernelRange3.24.4.294
OR
linuxlinux_kernelRange4.54.9.292
OR
linuxlinux_kernelRange4.104.14.257
OR
linuxlinux_kernelRange4.154.19.219
OR
linuxlinux_kernelRange4.205.4.163
OR
linuxlinux_kernelRange5.55.10.83
OR
linuxlinux_kernelRange5.115.15.6
VendorProductVersionCPE
linuxlinux_kernel*cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

6.6

Confidence

High

EPSS

0

Percentile

5.1%