cbcvebase.
CVE-2021-47660
published 2025-02-26

CVE-2021-47660: In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix some memory leaks in an error handling path of 'log_replay()' All error…

PriorityP416medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
15.4th percentile
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix some memory leaks in an error handling path of 'log_replay()' All error handling paths lead to 'out' where many resources are freed. Do it as well here instead of a direct return, otherwise 'log', 'ra' and 'log->one_page_buf' (at least) will leak.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.18.5-1 (bookworm)linux 5.18.5-1 (bookworm)
linuxlinux
linuxlinux>= b46acd6a6a627d876898e1c84d3f84902264b445 < d8be98ab88250dc12a98efdb703792a537b0eac3d8be98ab88250dc12a98efdb703792a537b0eac3
linuxlinux>= b46acd6a6a627d876898e1c84d3f84902264b445 < bc4a1d384a04c6dba9312e1421a9f9f7c03339a4bc4a1d384a04c6dba9312e1421a9f9f7c03339a4
linuxlinux>= b46acd6a6a627d876898e1c84d3f84902264b445 < 2c97519ed6b4239594c58ddacf3d0d576cf070cc2c97519ed6b4239594c58ddacf3d0d576cf070cc
linuxlinux>= b46acd6a6a627d876898e1c84d3f84902264b445 < e589f9b7078e1c0191613cd736f598e81d2390dee589f9b7078e1c0191613cd736f598e81d2390de
linuxlinux_kernel>= 0 < 5.18.5-15.18.5-1
linuxlinux_kernel>= 0 < 5.18.5-15.18.5-1
linuxlinux_kernel>= 0 < 5.18.5-15.18.5-1
linuxlinux_kernel>= 5.15 < 5.15.465.15.46
linuxlinux_kernel>= 5.16 < 5.17.145.17.14
linuxlinux_kernel>= 5.18 < 5.18.35.18.3

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.