CVE-2021-47644: media: staging: media: zoran: move videodev alloc
Published Feb 26, 2025
·Updated
In the Linux kernel, the following vulnerability has been resolved:
media: staging: media: zoran: move videodev alloc
Move some code out of zr36057init() and create new functions for handling zr->videodev. This permit to ease code reading and fix a zr->videodev memory leak.
Affected Software
4 affected components
Linux Linux kernel<5.10.110
Linux Linux kernel>=5.11<5.15.33
Linux Linux kernel>=5.16<5.16.19
Linux Linux kernel>=5.17<5.17.2
Remediation
Event History
Feb 26, 2025
CVE Published
via MITRE·01:54 AM
Data Sourced
via MITRE·01:54 AM
Description
Data Sourced
via NVD·06:37 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
The CVSS vector indicates local access and low privileges are required. No user interaction is required.
2
What is the impact if the issue is exploited?
The reported impact is availability only, with a high availability impact. The CVSS vector reports no confidentiality or integrity impact.
3
What component should be prioritized for remediation?
Systems running the Linux kernel with the staging media zoran driver are the relevant affected scope described by the advisory. A patch is available.