๐Ÿ” CVE Alert

CVE-2021-47653

HIGH 7.8

media: davinci: vpif: fix use-after-free on driver unbind

CVSS Score
7.8
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: media: davinci: vpif: fix use-after-free on driver unbind The driver allocates and registers two platform device structures during probe, but the devices were never deregistered on driver unbind. This results in a use-after-free on driver unbind as the device structures were allocated using devres and would be freed by driver core when remove() returns. Fix this by adding the missing deregistration calls to the remove() callback and failing probe on registration errors. Note that the platform device structures must be freed using a proper release callback to avoid leaking associated resources like device names.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Feb 26, 2025
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new high vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
479f7a1181058689435baddc16a6a42e1a8ff0e8 < 6512c3c39cb6b573b791ce45365818a38b76afbe 479f7a1181058689435baddc16a6a42e1a8ff0e8 < b5a3bb7f6f164eb6ee74ef4898dcd019b2063448 479f7a1181058689435baddc16a6a42e1a8ff0e8 < 9ffc602e14d7b9f7e7cb2f67e18dfef9ef8af676 479f7a1181058689435baddc16a6a42e1a8ff0e8 < 43acb728bbc40169d2e2425e84a80068270974be
Linux / Linux
4.13

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/6512c3c39cb6b573b791ce45365818a38b76afbe git.kernel.org: https://git.kernel.org/stable/c/b5a3bb7f6f164eb6ee74ef4898dcd019b2063448 git.kernel.org: https://git.kernel.org/stable/c/9ffc602e14d7b9f7e7cb2f67e18dfef9ef8af676 git.kernel.org: https://git.kernel.org/stable/c/43acb728bbc40169d2e2425e84a80068270974be