Bug 1220841 (CVE-2021-47079)

Summary: VUL-0: CVE-2021-47079: kernel: platform/x86: ideapad-laptop: fix a NULL pointer dereference
Product: [Novell Products] SUSE Security Incidents Reporter: SMASH SMASH <smash_bz>
Component: IncidentsAssignee: Kernel Bugs <kernel-bugs>
Status: RESOLVED FIXED QA Contact: Security Team bot <security-team>
Severity: Normal    
Priority: P3 - Medium CC: rfrohl
Version: unspecified   
Target Milestone: ---   
Hardware: Other   
OS: Other   
URL: https://smash.suse.de/issue/396017/
Whiteboard:
Found By: Security Response Team Services Priority:
Business Priority: Blocker: ---
Marketing QA Status: --- IT Deployment: ---

Description SMASH SMASH 2024-03-04 10:11:06 UTC
In the Linux kernel, the following vulnerability has been resolved:

platform/x86: ideapad-laptop: fix a NULL pointer dereference

The third parameter of dytc_cql_command should not be NULL since it will
be dereferenced immediately.

References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2021-47079
https://www.cve.org/CVERecord?id=CVE-2021-47079
https://git.kernel.org/stable/c/beab753fe3b4e087411a850a64c6cd748544d8a1
https://git.kernel.org/stable/c/ff67dbd554b2aaa22be933eced32610ff90209dd
https://bugzilla.redhat.com/show_bug.cgi?id=2267531
Comment 1 Robert Frohl 2024-03-04 10:15:36 UTC
does not affect SUSE kernels, closing
Comment 2 Robert Frohl 2024-03-04 10:15:48 UTC
.