Bug 2282440 (CVE-2021-47321) - CVE-2021-47321 kernel: watchdog: Fix possible use-after-free by calling del_timer_sync()
Summary: CVE-2021-47321 kernel: watchdog: Fix possible use-after-free by calling del_t...
Keywords:
Status: NEW
Alias: CVE-2021-47321
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Product Security
QA Contact:
URL:
Whiteboard:
Depends On:
Blocks: 2282500
TreeView+ depends on / blocked
 
Reported: 2024-05-22 12:00 UTC by ybuenos
Modified: 2024-11-04 15:08 UTC (History)
50 users (show)

Fixed In Version: kernel 4.4.276, kernel 4.9.276, kernel 4.14.240, kernel 4.19.198, kernel 5.4.134, kernel 5.10.52, kernel 5.12.19, kernel 5.13.4, kernel 5.14
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHBA-2024:7043 0 None None None 2024-09-24 09:42:24 UTC
Red Hat Product Errata RHBA-2024:7198 0 None None None 2024-09-26 09:50:05 UTC
Red Hat Product Errata RHBA-2024:7236 0 None None None 2024-09-26 14:32:38 UTC
Red Hat Product Errata RHBA-2024:7637 0 None None None 2024-10-03 14:45:10 UTC
Red Hat Product Errata RHBA-2024:8227 0 None None None 2024-10-17 06:45:12 UTC
Red Hat Product Errata RHSA-2024:7000 0 None None None 2024-09-24 02:30:58 UTC
Red Hat Product Errata RHSA-2024:7001 0 None None None 2024-09-24 00:36:33 UTC
Red Hat Product Errata RHSA-2024:8107 0 None None None 2024-10-15 00:35:27 UTC

Description ybuenos 2024-05-22 12:00:46 UTC
In the Linux kernel, the following vulnerability has been resolved:

watchdog: Fix possible use-after-free by calling del_timer_sync()

The Linux kernel CVE team has assigned CVE-2021-47321 to this issue.

Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024052132-CVE-2021-47321-1b9b@gregkh/T

Comment 126 errata-xmlrpc 2024-09-24 00:36:29 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2024:7001 https://access.redhat.com/errata/RHSA-2024:7001

Comment 127 errata-xmlrpc 2024-09-24 02:30:54 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2024:7000 https://access.redhat.com/errata/RHSA-2024:7000

Comment 128 errata-xmlrpc 2024-10-15 00:35:24 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.8 Extended Update Support

Via RHSA-2024:8107 https://access.redhat.com/errata/RHSA-2024:8107


Note You need to log in before you can comment on or make changes to this bug.