PT-2024-11322 · Linux+2 · Linux Kernel+2

Hulk Robot

·

Published

2021-06-21

·

Updated

2025-04-02

·

CVE-2021-47323

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to a possible use-after-free in the wdt turnoff() function of the sc520 wdt module. The problem occurs because the del timer() function does not wait for the timer handler to finish, which can lead to a use-after-free situation. This is fixed by calling del timer sync(), ensuring the timer handler has finished and cannot re-schedule itself.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-07308
CVE-2021-47323
OESA-2024-1692
OPENSUSE-SU-2024_2185-1
SUSE-SU-2024:1978-1
SUSE-SU-2024:1979-1
SUSE-SU-2024:1983-1
SUSE-SU-2024:2010-1
SUSE-SU-2024:2183-1
SUSE-SU-2024:2184-1
SUSE-SU-2024:2185-1

Affected Products

Astra Linux
Linux Kernel
Suse