Resource Leak Affecting kernel-rt-debug-kvm package, versions *
Threat Intelligence
EPSS
0.04% (15th
percentile)
Do your applications use this vulnerable package?
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applications- Snyk ID SNYK-CENTOS7-KERNELRTDEBUGKVM-7239938
- published 10 Jun 2024
- disclosed 21 May 2024
Introduced: 21 May 2024
CVE-2021-47319 Open this link in a new tabHow to fix?
There is no fixed version for Centos:7
kernel-rt-debug-kvm
.
NVD Description
Note: Versions mentioned in the description apply only to the upstream kernel-rt-debug-kvm
package and not the kernel-rt-debug-kvm
package as distributed by Centos
.
See How to fix?
for Centos:7
relevant fixed versions and status.
In the Linux kernel, the following vulnerability has been resolved:
virtio-blk: Fix memory leak among suspend/resume procedure
The vblk->vqs should be freed before we call init_vqs() in virtblk_restore().
References
- https://access.redhat.com/security/cve/CVE-2021-47319
- https://git.kernel.org/stable/c/04c6e60b884cb5e94ff32af46867fb41d5848358
- https://git.kernel.org/stable/c/102d6bc6475ab09bab579c18704e6cf8d898e93c
- https://git.kernel.org/stable/c/29a2f4a3214aa14d61cc9737c9f886dae9dbb710
- https://git.kernel.org/stable/c/381bde79d11e596002edfd914e6714291826967a
- https://git.kernel.org/stable/c/600942d2fd49b90e44857d20c774b20d16f3130f
- https://git.kernel.org/stable/c/863da837964c80c72e368a4f748c30d25daa1815
- https://git.kernel.org/stable/c/b71ba22e7c6c6b279c66f53ee7818709774efa1f
- https://git.kernel.org/stable/c/ca2b8ae93a6da9839dc7f9eb9199b18aa03c3dae
- https://git.kernel.org/stable/c/cd24da0db9f75ca11eaf6060f0ccb90e2f3be3b0
CVSS Scores
version 3.1