CVE-2021-46968
published 2024-02-27CVE-2021-46968: In the Linux kernel, the following vulnerability has been resolved: s390/zcrypt: fix zcard and zqueue hot-unplug memleak Tests with kvm and a kmemdebug kernel…
PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
12.8th percentile
In the Linux kernel, the following vulnerability has been resolved:
s390/zcrypt: fix zcard and zqueue hot-unplug memleak
Tests with kvm and a kmemdebug kernel showed, that on hot unplug the
zcard and zqueue structs for the unplugged card or queue are not
properly freed because of a mismatch with get/put for the embedded
kref counter.
This fix now adjusts the handling of the kref counters. With init the
kref counter starts with 1. This initial value needs to drop to zero
with the unregister of the card or queue to trigger the release and
free the object.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.10.38-1 (bookworm) | linux 5.10.38-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 29c2680fd2bf3862ff5cf2957f198512493156f9 < 026499a9c2e002e621ad568d1378324ae97e5524 | 026499a9c2e002e621ad568d1378324ae97e5524 |
| linux | linux | >= 29c2680fd2bf3862ff5cf2957f198512493156f9 < 055a063a18bcd19b93709e3eac8078d6b2f04599 | 055a063a18bcd19b93709e3eac8078d6b2f04599 |
| linux | linux | >= 29c2680fd2bf3862ff5cf2957f198512493156f9 < 971dc8706cee47393d393905d294ea47e39503d3 | 971dc8706cee47393d393905d294ea47e39503d3 |
| linux | linux | >= 29c2680fd2bf3862ff5cf2957f198512493156f9 < 70fac8088cfad9f3b379c9082832b4d7532c16c2 | 70fac8088cfad9f3b379c9082832b4d7532c16c2 |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 5.10 < 5.10.36 | 5.10.36 |
| linux | linux_kernel | >= 5.11 < 5.11.20 | 5.11.20 |
| linux | linux_kernel | >= 5.12 < 5.12.3 | 5.12.3 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2021-46968: In the Linux kernel, the following vulnerability has been resolved: s390/zcrypt: fix zcard and zqueue hot-unplug memleak Tests with kvm and a kmemdebu
osv·2024-02-27·CVSS 5.5
CVE-2021-46968 [MEDIUM] CVE-2021-46968: In the Linux kernel, the following vulnerability has been resolved: s390/zcrypt: fix zcard and zqueue hot-unplug memleak Tests with kvm and a kmemdebu
In the Linux kernel, the following vulnerability has been resolved: s390/zcrypt: fix zcard and zqueue hot-unplug memleak Tests with kvm and a kmemdebug kernel showed, that on hot unplug the zcard and zqueue structs for the unplugged card or queue are not properly freed because of a mismatch with get/put for the embedded kref counter. This fix now adjusts the handling of the kref counters. With init the kref counter starts with 1. This initial value needs to drop to zero with the unregister of the card or queue to trigger the release and free the object.
GHSA
GHSA-rcvc-x6h8-mpp2: In the Linux kernel, the following vulnerability has been resolved:
s390/zcrypt: fix zcard and zqueue hot-unplug memleak
Tests with kvm and a kmemde
ghsa_unreviewed·2024-02-27
CVE-2021-46968 [MEDIUM] CWE-401 GHSA-rcvc-x6h8-mpp2: In the Linux kernel, the following vulnerability has been resolved:
s390/zcrypt: fix zcard and zqueue hot-unplug memleak
Tests with kvm and a kmemde
In the Linux kernel, the following vulnerability has been resolved:
s390/zcrypt: fix zcard and zqueue hot-unplug memleak
Tests with kvm and a kmemdebug kernel showed, that on hot unplug the
zcard and zqueue structs for the unplugged card or queue are not
properly freed because of a mismatch with get/put for the embedded
kref counter.
This fix now adjusts the handling of the kref counters. With init the
kref counter starts with 1. This initial value needs to drop to zero
with the unregister of the card or queue to trigger the release and
free the object.
Red Hat
kernel: s390/zcrypt: fix zcard and zqueue hot-unplug memleak
vendor_redhat·2024-02-27·CVSS 5.5
CVE-2021-46968 [MEDIUM] CWE-402 kernel: s390/zcrypt: fix zcard and zqueue hot-unplug memleak
kernel: s390/zcrypt: fix zcard and zqueue hot-unplug memleak
In the Linux kernel, the following vulnerability has been resolved:
s390/zcrypt: fix zcard and zqueue hot-unplug memleak
Tests with kvm and a kmemdebug kernel showed, that on hot unplug the
zcard and zqueue structs for the unplugged card or queue are not
properly freed because of a mismatch with get/put for the embedded
kref counter.
This fix now adjusts the handling of the kref counters. With init the
kref counter starts with 1. This initial value needs to drop to zero
with the unregister of the card or queue to trigger the release and
free the object.
Statement: No Red Hat Products are affected by this vulnerability.
Package: kernel (Red Hat Enterprise Linux 6) - Out of support scope
Package: kernel (Red Hat Enterprise Linu
Debian
CVE-2021-46968: linux - In the Linux kernel, the following vulnerability has been resolved: s390/zcrypt...
vendor_debian·2021·CVSS 5.5
CVE-2021-46968 [MEDIUM] CVE-2021-46968: linux - In the Linux kernel, the following vulnerability has been resolved: s390/zcrypt...
In the Linux kernel, the following vulnerability has been resolved: s390/zcrypt: fix zcard and zqueue hot-unplug memleak Tests with kvm and a kmemdebug kernel showed, that on hot unplug the zcard and zqueue structs for the unplugged card or queue are not properly freed because of a mismatch with get/put for the embedded kref counter. This fix now adjusts the handling of the kref counters. With init the kref counter starts with 1. This initial value needs to drop to zero with the unregister of the card or queue to trigger the release and free the object.
Scope: local
bookworm: resolved (fixed in 5.10.38-1)
bullseye: resolved (fixed in 5.10.38-1)
forky: resolved (fixed in 5.10.38-1)
sid: resolved (fixed in 5.10.38-1)
trixie: resolved (fixed in 5.10.38-1)
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/026499a9c2e002e621ad568d1378324ae97e5524https://git.kernel.org/stable/c/055a063a18bcd19b93709e3eac8078d6b2f04599https://git.kernel.org/stable/c/70fac8088cfad9f3b379c9082832b4d7532c16c2https://git.kernel.org/stable/c/971dc8706cee47393d393905d294ea47e39503d3https://git.kernel.org/stable/c/026499a9c2e002e621ad568d1378324ae97e5524https://git.kernel.org/stable/c/055a063a18bcd19b93709e3eac8078d6b2f04599https://git.kernel.org/stable/c/70fac8088cfad9f3b379c9082832b4d7532c16c2https://git.kernel.org/stable/c/971dc8706cee47393d393905d294ea47e39503d3
2024-02-27
Published