CVE-2021-47250
published 2024-05-21CVE-2021-47250: In the Linux kernel, the following vulnerability has been resolved: net: ipv4: fix memory leak in netlbl_cipsov4_add_std Reported by syzkaller: BUG: memory…
PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
14.7th percentile
In the Linux kernel, the following vulnerability has been resolved:
net: ipv4: fix memory leak in netlbl_cipsov4_add_std
Reported by syzkaller:
BUG: memory leak
unreferenced object 0xffff888105df7000 (size 64):
comm "syz-executor842", pid 360, jiffies 4294824824 (age 22.546s)
hex dump (first 32 bytes):
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
backtrace:
[] kmalloc include/linux/slab.h:590 [inline]
[] kzalloc include/linux/slab.h:720 [inline]
[] netlbl_cipsov4_add_std net/netlabel/netlabel_cipso_v4.c:145 [inline]
[] netlbl_cipsov4_add+0x390/0x2340 net/netlabel/netlabel_cipso_v4.c:416
[] genl_family_rcv_msg_doit.isra.0+0x20e/0x320 net/netlink/genetlink.c:739
[] genl_family_rcv_msg net/netlink/genetlink.c:783 [inline]
[] genl_rcv_msg+0x2bf/0x4f0 net/netlink/genetlink.c:800
[] netlink_rcv_skb+0x134/0x3d0 net/netlink/af_netlink.c:2504
[] genl_rcv+0x24/0x40 net/netlink/genetlink.c:811
[] netlink_unicast_kernel net/netlink/af_netlink.c:1314 [inline]
[] netlink_unicast+0x4a0/0x6a0 net/netlink/af_netlink.c:1340
[] netlink_sendmsg+0x789/0xc70 net/netlink/af_netlink.c:1929
[] sock_sendmsg_nosec net/socket.c:654 [inline]
[] sock_sendmsg+0x139/0x170 net/socket.c:674
[] ____sys_sendmsg+0x658/0x7d0 net/socket.c:2350
[] ___sys_sendmsg+0xf8/0x170 net/socket.c:2404
[] __sys_sendmsg+0xd3/0x190 net/socket.c:2433
[] do_syscall_64+0x37/0x90 arch/x86/entry/common.c:47
[] entry_SYSCALL_64_after_hwframe+0x44/0xae
The memory of doi_def->map.std pointing is allocated in
netlbl_cipsov4_add_std, but no place has freed it. It should be
freed in cipso_v4_doi_free which frees the cipso DOI resource.
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.10.46-1 (bookworm) | linux 5.10.46-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 96cb8e3313c7a12e026c1ed510522ae6f6023875 < 212166510582631994be4f4b3fe15e10a03c1dd4 | 212166510582631994be4f4b3fe15e10a03c1dd4 |
| linux | linux | >= 96cb8e3313c7a12e026c1ed510522ae6f6023875 < 086e92b1d68c6338535f715aad173f8cf4bfbc8c | 086e92b1d68c6338535f715aad173f8cf4bfbc8c |
| linux | linux | >= 96cb8e3313c7a12e026c1ed510522ae6f6023875 < 6dcea66d3bb519b426282588f38e884e07893c1f | 6dcea66d3bb519b426282588f38e884e07893c1f |
| linux | linux | >= 96cb8e3313c7a12e026c1ed510522ae6f6023875 < 5340858147e3dc60913fb3dd0cbb758ec4a26e66 | 5340858147e3dc60913fb3dd0cbb758ec4a26e66 |
| linux | linux | >= 96cb8e3313c7a12e026c1ed510522ae6f6023875 < 398a24447eb60f060c8994221cb5ae6caf355fa1 | 398a24447eb60f060c8994221cb5ae6caf355fa1 |
| linux | linux | >= 96cb8e3313c7a12e026c1ed510522ae6f6023875 < deeeb65c6ee404f2d1fb80b38b2730645c0f4663 | deeeb65c6ee404f2d1fb80b38b2730645c0f4663 |
| linux | linux | >= 96cb8e3313c7a12e026c1ed510522ae6f6023875 < 0ffb460be3abac86f884a8c548bb02724ec370f4 | 0ffb460be3abac86f884a8c548bb02724ec370f4 |
| linux | linux | >= 96cb8e3313c7a12e026c1ed510522ae6f6023875 < d612c3f3fae221e7ea736d196581c2217304bbbc | d612c3f3fae221e7ea736d196581c2217304bbbc |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 5.10.46-1 | 5.10.46-1 |
| linux | linux_kernel | >= 0 < 5.10.46-1 | 5.10.46-1 |
| linux | linux_kernel | >= 0 < 5.10.46-1 | 5.10.46-1 |
| linux | linux_kernel | >= 0 < 5.10.46-1 | 5.10.46-1 |
| linux | linux_kernel | >= 2.6.19 < 4.4.274 | 4.4.274 |
| linux | linux_kernel | >= 4.10 < 4.14.238 | 4.14.238 |
| linux | linux_kernel | >= 4.15 < 4.19.196 | 4.19.196 |
| linux | linux_kernel | >= 4.20 < 5.4.128 | 5.4.128 |
| linux | linux_kernel | >= 4.5 < 4.9.274 | 4.9.274 |
| linux | linux_kernel | >= 5.11 < 5.12.13 | 5.12.13 |
| linux | linux_kernel | >= 5.5 < 5.10.46 | 5.10.46 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-wr5g-85mp-25c9: In the Linux kernel, the following vulnerability has been resolved:
net: ipv4: fix memory leak in netlbl_cipsov4_add_std
Reported by syzkaller:
BUG:
ghsa_unreviewed·2024-05-21
CVE-2021-47250 [MEDIUM] CWE-401 GHSA-wr5g-85mp-25c9: In the Linux kernel, the following vulnerability has been resolved:
net: ipv4: fix memory leak in netlbl_cipsov4_add_std
Reported by syzkaller:
BUG:
In the Linux kernel, the following vulnerability has been resolved:
net: ipv4: fix memory leak in netlbl_cipsov4_add_std
Reported by syzkaller:
BUG: memory leak
unreferenced object 0xffff888105df7000 (size 64):
comm "syz-executor842", pid 360, jiffies 4294824824 (age 22.546s)
hex dump (first 32 bytes):
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
backtrace:
[] kmalloc include/linux/slab.h:590 [inline]
[] kzalloc include/linux/slab.h:720 [inline]
[] netlbl_cipsov4_add_std net/netlabel/netlabel_cipso_v4.c:145 [inline]
[] netlbl_cipsov4_add+0x390/0x2340 net/netlabel/netlabel_cipso_v4.c:416
[] genl_family_rcv_msg_doit.isra.0+0x20e/0x320 net/netlink/genetlink.c:739
[] genl_family_rcv_msg net/netlink/genetlink
OSV
CVE-2021-47250: In the Linux kernel, the following vulnerability has been resolved: net: ipv4: fix memory leak in netlbl_cipsov4_add_std Reported by syzkaller: BUG: m
osv·2024-05-21·CVSS 5.5
CVE-2021-47250 [MEDIUM] CVE-2021-47250: In the Linux kernel, the following vulnerability has been resolved: net: ipv4: fix memory leak in netlbl_cipsov4_add_std Reported by syzkaller: BUG: m
In the Linux kernel, the following vulnerability has been resolved: net: ipv4: fix memory leak in netlbl_cipsov4_add_std Reported by syzkaller: BUG: memory leak unreferenced object 0xffff888105df7000 (size 64): comm "syz-executor842", pid 360, jiffies 4294824824 (age 22.546s) hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ backtrace: [] kmalloc include/linux/slab.h:590 [inline] [] kzalloc include/linux/slab.h:720 [inline] [] netlbl_cipsov4_add_std net/netlabel/netlabel_cipso_v4.c:145 [inline] [] netlbl_cipsov4_add+0x390/0x2340 net/netlabel/netlabel_cipso_v4.c:416 [] genl_family_rcv_msg_doit.isra.0+0x20e/0x320 net/netlink/genetlink.c:739 [] genl_family_rcv_msg net/netlink/genetlink.c
Red Hat
kernel: net: ipv4: fix memory leak in netlbl_cipsov4_add_std
vendor_redhat·2024-05-21·CVSS 5.5
CVE-2021-47250 [MEDIUM] CWE-402 kernel: net: ipv4: fix memory leak in netlbl_cipsov4_add_std
kernel: net: ipv4: fix memory leak in netlbl_cipsov4_add_std
In the Linux kernel, the following vulnerability has been resolved:
net: ipv4: fix memory leak in netlbl_cipsov4_add_std
Reported by syzkaller:
BUG: memory leak
unreferenced object 0xffff888105df7000 (size 64):
comm "syz-executor842", pid 360, jiffies 4294824824 (age 22.546s)
hex dump (first 32 bytes):
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
backtrace:
[] kmalloc include/linux/slab.h:590 [inline]
[] kzalloc include/linux/slab.h:720 [inline]
[] netlbl_cipsov4_add_std net/netlabel/netlabel_cipso_v4.c:145 [inline]
[] netlbl_cipsov4_add+0x390/0x2340 net/netlabel/netlabel_cipso_v4.c:416
[] genl_family_rcv_msg_doit.isra.0+0x20e/0x320 net/netlink/
Debian
CVE-2021-47250: linux - In the Linux kernel, the following vulnerability has been resolved: net: ipv4: ...
vendor_debian·2021·CVSS 5.5
CVE-2021-47250 [MEDIUM] CVE-2021-47250: linux - In the Linux kernel, the following vulnerability has been resolved: net: ipv4: ...
In the Linux kernel, the following vulnerability has been resolved: net: ipv4: fix memory leak in netlbl_cipsov4_add_std Reported by syzkaller: BUG: memory leak unreferenced object 0xffff888105df7000 (size 64): comm "syz-executor842", pid 360, jiffies 4294824824 (age 22.546s) hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ backtrace: [] kmalloc include/linux/slab.h:590 [inline] [] kzalloc include/linux/slab.h:720 [inline] [] netlbl_cipsov4_add_std net/netlabel/netlabel_cipso_v4.c:145 [inline] [] netlbl_cipsov4_add+0x390/0x2340 net/netlabel/netlabel_cipso_v4.c:416 [] genl_family_rcv_msg_doit.isra.0+0x20e/0x320 net/netlink/genetlink.c:739 [] genl_family_rcv_msg net/netlink/genetlink.c
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/086e92b1d68c6338535f715aad173f8cf4bfbc8chttps://git.kernel.org/stable/c/0ffb460be3abac86f884a8c548bb02724ec370f4https://git.kernel.org/stable/c/212166510582631994be4f4b3fe15e10a03c1dd4https://git.kernel.org/stable/c/398a24447eb60f060c8994221cb5ae6caf355fa1https://git.kernel.org/stable/c/5340858147e3dc60913fb3dd0cbb758ec4a26e66https://git.kernel.org/stable/c/6dcea66d3bb519b426282588f38e884e07893c1fhttps://git.kernel.org/stable/c/d612c3f3fae221e7ea736d196581c2217304bbbchttps://git.kernel.org/stable/c/deeeb65c6ee404f2d1fb80b38b2730645c0f4663https://git.kernel.org/stable/c/086e92b1d68c6338535f715aad173f8cf4bfbc8chttps://git.kernel.org/stable/c/0ffb460be3abac86f884a8c548bb02724ec370f4https://git.kernel.org/stable/c/212166510582631994be4f4b3fe15e10a03c1dd4https://git.kernel.org/stable/c/398a24447eb60f060c8994221cb5ae6caf355fa1https://git.kernel.org/stable/c/5340858147e3dc60913fb3dd0cbb758ec4a26e66https://git.kernel.org/stable/c/6dcea66d3bb519b426282588f38e884e07893c1fhttps://git.kernel.org/stable/c/d612c3f3fae221e7ea736d196581c2217304bbbchttps://git.kernel.org/stable/c/deeeb65c6ee404f2d1fb80b38b2730645c0f4663
2024-05-21
Published