5.5
CVE-2021-47420
- EPSS 0.19%
- Veröffentlicht 21.05.2024 15:15:27
- Zuletzt bearbeitet 30.12.2024 19:37:04
- Erkennungen
drm/amdkfd: fix a potential ttm->sg memory leak
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: fix a potential ttm->sg memory leak Memory is allocated for ttm->sg by kmalloc in kfd_mem_dmamap_userptr, but isn't freed by kfree in kfd_mem_dmaunmap_userptr. Free it!
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 5.14 < 5.14.12
Linux ≫ Linux Kernel Version 5.15 Update rc1
Linux ≫ Linux Kernel Version 5.15 Update rc2
Linux ≫ Linux Kernel Version 5.15 Update rc3
Linux ≫ Linux Kernel Version 5.15 Update rc4
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.19% | 0.091 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
CWE-401 Missing Release of Memory after Effective Lifetime
The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.
https://git.kernel.org/stable/c/7e5ce6029b627efb4a004746cfdc1eeff850e6eb
https://git.kernel.org/stable/c/b072ef1215aca33186e3a10109e872e528a9e516