Resource Leak Affecting kernel-kdump-devel package, versions *
Threat Intelligence
EPSS
0.04% (15th
percentile)
Do your applications use this vulnerable package?
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applications- Snyk ID SNYK-RHEL7-KERNELKDUMPDEVEL-7002094
- published 22 May 2024
- disclosed 21 May 2024
Introduced: 21 May 2024
CVE-2021-47330 Open this link in a new tabHow to fix?
There is no fixed version for RHEL:7
kernel-kdump-devel
.
NVD Description
Note: Versions mentioned in the description apply only to the upstream kernel-kdump-devel
package and not the kernel-kdump-devel
package as distributed by RHEL
.
See How to fix?
for RHEL:7
relevant fixed versions and status.
In the Linux kernel, the following vulnerability has been resolved:
tty: serial: 8250: serial_cs: Fix a memory leak in error handling path
In the probe function, if the final 'serial_config()' fails, 'info' is leaking.
Add a resource handling path to free this memory.
References
- https://access.redhat.com/security/cve/CVE-2021-47330
- https://git.kernel.org/stable/c/331f5923fce4f45b8170ccf06c529e8eb28f37bc
- https://git.kernel.org/stable/c/34f4590f5ec9859ea9136249f528173d150bd584
- https://git.kernel.org/stable/c/7a80f71601af015856a0aeb1e3c294037ac3dd32
- https://git.kernel.org/stable/c/b2ef1f5de40342de44fc5355321595f91774dab5
- https://git.kernel.org/stable/c/b5a2799cd62ed30c81b22c23028d9ee374e2138c
- https://git.kernel.org/stable/c/c39cf4df19acf0133fa284a8cd83fad42cd13cc2
- https://git.kernel.org/stable/c/cddee5c287e26f6b2ba5c0ffdfc3a846f2f10461
- https://git.kernel.org/stable/c/ee16bed959862a6de2913f71a04cb563d7237b67
- https://git.kernel.org/stable/c/fad92b11047a748c996ebd6cfb164a63814eeb2e
CVSS Scores
version 3.1