cbcvebase.
CVE-2021-47121
published 2024-03-15

CVE-2021-47121: In the Linux kernel, the following vulnerability has been resolved: net: caif: fix memory leak in cfusbl_device_notify In case of caif_enroll_dev() fail…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.23%
13.9th percentile
In the Linux kernel, the following vulnerability has been resolved: net: caif: fix memory leak in cfusbl_device_notify In case of caif_enroll_dev() fail, allocated link_support won't be assigned to the corresponding structure. So simply free allocated pointer in case of error.

Affected

22 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.10.46-1 (bookworm)linux 5.10.46-1 (bookworm)
linuxlinux
linuxlinux>= 7ad65bf68d705b445ef10b77ab50dab22be185ee < cc302e30a504e6b60a9ac8df7988646f46cd0294cc302e30a504e6b60a9ac8df7988646f46cd0294
linuxlinux>= 7ad65bf68d705b445ef10b77ab50dab22be185ee < 81afc61cb6e2b553f2c5f992fa79e0ae7385714181afc61cb6e2b553f2c5f992fa79e0ae73857141
linuxlinux>= 7ad65bf68d705b445ef10b77ab50dab22be185ee < e8b37f5009ea7095529790f022859711e6939c76e8b37f5009ea7095529790f022859711e6939c76
linuxlinux>= 7ad65bf68d705b445ef10b77ab50dab22be185ee < 9ea0ab48e755d8f29fe89eb235fb86176fdb597f9ea0ab48e755d8f29fe89eb235fb86176fdb597f
linuxlinux>= 7ad65bf68d705b445ef10b77ab50dab22be185ee < 4d94f530cd24c85aede6e72b8923f371b45d68864d94f530cd24c85aede6e72b8923f371b45d6886
linuxlinux>= 7ad65bf68d705b445ef10b77ab50dab22be185ee < 46403c1f80b0d3f937ff9c4f5edc63bb64bc505146403c1f80b0d3f937ff9c4f5edc63bb64bc5051
linuxlinux>= 7ad65bf68d705b445ef10b77ab50dab22be185ee < dde8686985ec24d6b00487080a906609bd613ea1dde8686985ec24d6b00487080a906609bd613ea1
linuxlinux>= 7ad65bf68d705b445ef10b77ab50dab22be185ee < 7f5d86669fa4d485523ddb1d212e0a2d90bd62bb7f5d86669fa4d485523ddb1d212e0a2d90bd62bb
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 3.3 < 4.4.2724.4.272
linuxlinux_kernel>= 4.10 < 4.14.2364.14.236
linuxlinux_kernel>= 4.15 < 4.19.1944.19.194
linuxlinux_kernel>= 4.20 < 5.4.1255.4.125
linuxlinux_kernel>= 4.5 < 4.9.2724.9.272
linuxlinux_kernel>= 5.11 < 5.12.105.12.10
linuxlinux_kernel>= 5.5 < 5.10.435.10.43

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.