cbcvebase.
CVE-2021-47161
published 2024-03-25

CVE-2021-47161: In the Linux kernel, the following vulnerability has been resolved: spi: spi-fsl-dspi: Fix a resource leak in an error handling path 'dspi_request_dma()'…

PriorityP416medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.23%
13.4th percentile
In the Linux kernel, the following vulnerability has been resolved: spi: spi-fsl-dspi: Fix a resource leak in an error handling path 'dspi_request_dma()' should be undone by a 'dspi_release_dma()' call in the error handling path of the probe function, as already done in the remove function

Affected

18 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.14.6-1 (bookworm)linux 5.14.6-1 (bookworm)
linuxlinux
linuxlinux>= 90ba37033cb94207e97c4ced9be575770438213b < 10a089bae827ec30ad9b6cb7048020a62fae0cfa10a089bae827ec30ad9b6cb7048020a62fae0cfa
linuxlinux>= 90ba37033cb94207e97c4ced9be575770438213b < 00450ed03a17143e2433b461a656ef9cd17c2f1d00450ed03a17143e2433b461a656ef9cd17c2f1d
linuxlinux>= 90ba37033cb94207e97c4ced9be575770438213b < 15d1cc4b4b585f9a2ce72c52cca004d5d735bdf115d1cc4b4b585f9a2ce72c52cca004d5d735bdf1
linuxlinux>= 90ba37033cb94207e97c4ced9be575770438213b < fe6921e3b8451a537e01c031b8212366bb386e3efe6921e3b8451a537e01c031b8212366bb386e3e
linuxlinux>= 90ba37033cb94207e97c4ced9be575770438213b < 12391be4724acc9269e1845ccbd881df37de4b5612391be4724acc9269e1845ccbd881df37de4b56
linuxlinux>= 90ba37033cb94207e97c4ced9be575770438213b < 680ec0549a055eb464dce6ffb4bfb736ef87236e680ec0549a055eb464dce6ffb4bfb736ef87236e
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.46-15.10.46-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 0 < 5.14.6-15.14.6-1
linuxlinux_kernel>= 4.10 < 4.14.2414.14.241
linuxlinux_kernel>= 4.15 < 4.19.1994.19.199
linuxlinux_kernel>= 4.20 < 5.4.1245.4.124
linuxlinux_kernel>= 5.11 < 5.12.95.12.9
linuxlinux_kernel>= 5.5 < 5.10.425.10.42

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.