CVE-2021-47320
published 2024-05-21CVE-2021-47320: In the Linux kernel, the following vulnerability has been resolved: nfs: fix acl memory leak of posix_acl_create() When looking into another nfs xfstests…
PriorityP416medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.26%
17.6th percentile
In the Linux kernel, the following vulnerability has been resolved:
nfs: fix acl memory leak of posix_acl_create()
When looking into another nfs xfstests report, I found acl and
default_acl in nfs3_proc_create() and nfs3_proc_mknod() error
paths are possibly leaked. Fix them in advance.
Affected
24 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.14.6-1 (bookworm) | linux 5.14.6-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 013cdf1088d7235da9477a2375654921d9b9ba9f < 2e3960f276b4574a9bb0dfa31a7497302f6363b2 | 2e3960f276b4574a9bb0dfa31a7497302f6363b2 |
| linux | linux | >= 013cdf1088d7235da9477a2375654921d9b9ba9f < cef9d9acb7c80ed6bace894b6334557fd493863b | cef9d9acb7c80ed6bace894b6334557fd493863b |
| linux | linux | >= 013cdf1088d7235da9477a2375654921d9b9ba9f < 8a2b308a54c5ec224fedc753617f99b29ffcd883 | 8a2b308a54c5ec224fedc753617f99b29ffcd883 |
| linux | linux | >= 013cdf1088d7235da9477a2375654921d9b9ba9f < 0704f617040c397ae73c1f88f3956787ec5d6529 | 0704f617040c397ae73c1f88f3956787ec5d6529 |
| linux | linux | >= 013cdf1088d7235da9477a2375654921d9b9ba9f < d0b32dc1409f7e65e4fcc34e236462268e69a357 | d0b32dc1409f7e65e4fcc34e236462268e69a357 |
| linux | linux | >= 013cdf1088d7235da9477a2375654921d9b9ba9f < 4b515308ab875c7e8ada8e606fe0c64762da5ed4 | 4b515308ab875c7e8ada8e606fe0c64762da5ed4 |
| linux | linux | >= 013cdf1088d7235da9477a2375654921d9b9ba9f < c8fc86e9df6a6a03f5a8e15a3b7a5c75fd05aa38 | c8fc86e9df6a6a03f5a8e15a3b7a5c75fd05aa38 |
| linux | linux | >= 013cdf1088d7235da9477a2375654921d9b9ba9f < 687cf32865b2d6960214bce523f2afac58dd3cd2 | 687cf32865b2d6960214bce523f2afac58dd3cd2 |
| linux | linux | >= 013cdf1088d7235da9477a2375654921d9b9ba9f < 1fcb6fcd74a222d9ead54d405842fc763bb86262 | 1fcb6fcd74a222d9ead54d405842fc763bb86262 |
| linux | linux_kernel | >= 0 < 5.10.70-1 | 5.10.70-1 |
| linux | linux_kernel | >= 0 < 5.14.6-1 | 5.14.6-1 |
| linux | linux_kernel | >= 0 < 5.14.6-1 | 5.14.6-1 |
| linux | linux_kernel | >= 0 < 5.14.6-1 | 5.14.6-1 |
| linux | linux_kernel | >= 0 < 4.4.0-267.301 | 4.4.0-267.301 |
| linux | linux_kernel | >= 3.14 < 4.4.276 | 4.4.276 |
| linux | linux_kernel | >= 4.10 < 4.14.240 | 4.14.240 |
| linux | linux_kernel | >= 4.15 < 4.19.198 | 4.19.198 |
| linux | linux_kernel | >= 4.20 < 5.4.134 | 5.4.134 |
| linux | linux_kernel | >= 4.5 < 4.9.276 | 4.9.276 |
| linux | linux_kernel | >= 5.11 < 5.12.19 | 5.12.19 |
| linux | linux_kernel | >= 5.13 < 5.13.4 | 5.13.4 |
| linux | linux_kernel | >= 5.5 < 5.10.52 | 5.10.52 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
vendor_ubuntu5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2025-04-09·CVSS 5.5
CVE-2024-50302 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- Drivers core;
- HID subsystem;
- Network drivers;
- SCSI subsystem;
- SuperH / SH-Mobile drivers;
- File systems infrastructure;
- Ext4 file system;
- JFS file system;
- Network file system (NFS) client;
- Memory management;
- Network namespace;
- CAIF protocol;
- Networking core;
- HSR network protocol;
- IPv4 networking;
- IPv6 networking;
- MAC80211 subsystem;
- Network traffic control;
(CVE-2025-21702, CVE-2024-53227, CVE-2024-46826, CVE-2024-49952,
CVE-2024-56600, CVE-2021-47235, CVE-2024-50265, CVE-2021-
Ubuntu
Linux kernel (FIPS) vulnerabilities
vendor_ubuntu·2025-04-09·CVSS 5.5
CVE-2024-50302 [MEDIUM] Linux kernel (FIPS) vulnerabilities
Title: Linux kernel (FIPS) vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- Drivers core;
- HID subsystem;
- Network drivers;
- SCSI subsystem;
- SuperH / SH-Mobile drivers;
- File systems infrastructure;
- Ext4 file system;
- JFS file system;
- Network file system (NFS) client;
- Memory management;
- Network namespace;
- CAIF protocol;
- Networking core;
- HSR network protocol;
- IPv4 networking;
- IPv6 networking;
- MAC80211 subsystem;
- Network traffic control;
(CVE-2025-21702, CVE-2024-53227, CVE-2024-46826, CVE-2024-49952,
CVE-2024-56600, CVE-2021-47235, CVE-2024-50265, CV
Red Hat
kernel: nfs: fix acl memory leak of posix_acl_create()
vendor_redhat·2024-05-21·CVSS 5.5
CVE-2021-47320 [MEDIUM] CWE-402 kernel: nfs: fix acl memory leak of posix_acl_create()
kernel: nfs: fix acl memory leak of posix_acl_create()
In the Linux kernel, the following vulnerability has been resolved:
nfs: fix acl memory leak of posix_acl_create()
When looking into another nfs xfstests report, I found acl and
default_acl in nfs3_proc_create() and nfs3_proc_mknod() error
paths are possibly leaked. Fix them in advance.
Package: kernel (Red Hat Enterprise Linux 6) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel-rt (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 8) - Affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Affected
Package: kernel (Red Hat Enterprise Linux 9) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 9) - Not affected
Debian
CVE-2021-47320: linux - In the Linux kernel, the following vulnerability has been resolved: nfs: fix ac...
vendor_debian·2021·CVSS 5.5
CVE-2021-47320 [MEDIUM] CVE-2021-47320: linux - In the Linux kernel, the following vulnerability has been resolved: nfs: fix ac...
In the Linux kernel, the following vulnerability has been resolved: nfs: fix acl memory leak of posix_acl_create() When looking into another nfs xfstests report, I found acl and default_acl in nfs3_proc_create() and nfs3_proc_mknod() error paths are possibly leaked. Fix them in advance.
Scope: local
bookworm: resolved (fixed in 5.14.6-1)
bullseye: resolved (fixed in 5.10.70-1)
forky: resolved (fixed in 5.14.6-1)
sid: resolved (fixed in 5.14.6-1)
trixie: resolved (fixed in 5.14.6-1)
OSV
linux-fips vulnerabilities
osv·2025-04-09·CVSS 5.5
[MEDIUM] linux-fips vulnerabilities
linux-fips vulnerabilities
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- Drivers core;
- HID subsystem;
- Network drivers;
- SCSI subsystem;
- SuperH / SH-Mobile drivers;
- File systems infrastructure;
- Ext4 file system;
- JFS file system;
- Network file system (NFS) client;
- Memory management;
- Network namespace;
- CAIF protocol;
- Networking core;
- HSR network protocol;
- IPv4 networking;
- IPv6 networking;
- MAC80211 subsystem;
- Network traffic control;
(CVE-2025-21702, CVE-2024-53227, CVE-2024-46826, CVE-2024-49952,
CVE-2024-56600, CVE-2021-47235, CVE-2024-50265, CVE-2021-47119,
CVE-2024-53165, CVE-2021-47483, CVE-2024-50302, CVE-2024-56595,
CVE-
OSV
linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities
osv·2025-04-09·CVSS 5.5
[MEDIUM] linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities
linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- Drivers core;
- HID subsystem;
- Network drivers;
- SCSI subsystem;
- SuperH / SH-Mobile drivers;
- File systems infrastructure;
- Ext4 file system;
- JFS file system;
- Network file system (NFS) client;
- Memory management;
- Network namespace;
- CAIF protocol;
- Networking core;
- HSR network protocol;
- IPv4 networking;
- IPv6 networking;
- MAC80211 subsystem;
- Network traffic control;
(CVE-2025-21702, CVE-2024-53227, CVE-2024-46826, CVE-2024-49952,
CVE-2024-56600, CVE-2021-47235, CVE-2024-50265, CVE-2021-47119,
CVE-2024-53165, CVE-2021-47483, C
OSV
CVE-2021-47320: In the Linux kernel, the following vulnerability has been resolved: nfs: fix acl memory leak of posix_acl_create() When looking into another nfs xfste
osv·2024-05-21·CVSS 5.5
CVE-2021-47320 [MEDIUM] CVE-2021-47320: In the Linux kernel, the following vulnerability has been resolved: nfs: fix acl memory leak of posix_acl_create() When looking into another nfs xfste
In the Linux kernel, the following vulnerability has been resolved: nfs: fix acl memory leak of posix_acl_create() When looking into another nfs xfstests report, I found acl and default_acl in nfs3_proc_create() and nfs3_proc_mknod() error paths are possibly leaked. Fix them in advance.
GHSA
GHSA-pwqm-5jrg-2v3g: In the Linux kernel, the following vulnerability has been resolved:
nfs: fix acl memory leak of posix_acl_create()
When looking into another nfs xfs
ghsa_unreviewed·2024-05-21
CVE-2021-47320 [MEDIUM] CWE-401 GHSA-pwqm-5jrg-2v3g: In the Linux kernel, the following vulnerability has been resolved:
nfs: fix acl memory leak of posix_acl_create()
When looking into another nfs xfs
In the Linux kernel, the following vulnerability has been resolved:
nfs: fix acl memory leak of posix_acl_create()
When looking into another nfs xfstests report, I found acl and
default_acl in nfs3_proc_create() and nfs3_proc_mknod() error
paths are possibly leaked. Fix them in advance.
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/0704f617040c397ae73c1f88f3956787ec5d6529https://git.kernel.org/stable/c/1fcb6fcd74a222d9ead54d405842fc763bb86262https://git.kernel.org/stable/c/2e3960f276b4574a9bb0dfa31a7497302f6363b2https://git.kernel.org/stable/c/4b515308ab875c7e8ada8e606fe0c64762da5ed4https://git.kernel.org/stable/c/687cf32865b2d6960214bce523f2afac58dd3cd2https://git.kernel.org/stable/c/8a2b308a54c5ec224fedc753617f99b29ffcd883https://git.kernel.org/stable/c/c8fc86e9df6a6a03f5a8e15a3b7a5c75fd05aa38https://git.kernel.org/stable/c/cef9d9acb7c80ed6bace894b6334557fd493863bhttps://git.kernel.org/stable/c/d0b32dc1409f7e65e4fcc34e236462268e69a357https://git.kernel.org/stable/c/0704f617040c397ae73c1f88f3956787ec5d6529https://git.kernel.org/stable/c/1fcb6fcd74a222d9ead54d405842fc763bb86262https://git.kernel.org/stable/c/2e3960f276b4574a9bb0dfa31a7497302f6363b2https://git.kernel.org/stable/c/4b515308ab875c7e8ada8e606fe0c64762da5ed4https://git.kernel.org/stable/c/687cf32865b2d6960214bce523f2afac58dd3cd2https://git.kernel.org/stable/c/8a2b308a54c5ec224fedc753617f99b29ffcd883https://git.kernel.org/stable/c/c8fc86e9df6a6a03f5a8e15a3b7a5c75fd05aa38https://git.kernel.org/stable/c/cef9d9acb7c80ed6bace894b6334557fd493863bhttps://git.kernel.org/stable/c/d0b32dc1409f7e65e4fcc34e236462268e69a357
2024-05-21
Published