PT-2024-11383 · Linux+2 · Linux Kernel+2

Kevin Hao

·

Published

2021-08-05

·

Updated

2024-10-10

·

CVE-2021-47387

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 5.14.0-rc1-next-20210715-yocto-standard+ #507
Description A vulnerability in the Linux kernel has been resolved. The issue is related to the cpufreq subsystem, specifically the schedutil governor. The struct sugov tunables is protected by a kobject, and attempting to free it directly would result in a call trace. To fix this, the original sugov tunables free() function has been split into two functions: sugov clear global tunables() to clear the global tunables and a new sugov tunables free() function used as kobj type::release to release the sugov tunables safely.
Recommendations To resolve the issue, update the Linux kernel to a version that includes the fix for this vulnerability. Specifically, update to a version later than 5.14.0-rc1-next-20210715-yocto-standard+ #507.
Note: The provided information does not specify the exact version that includes the fix, so it is recommended to update to the latest available version of the Linux kernel.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-14564
CVE-2021-47387
OPENSUSE-SU-2024_2185-1
OPENSUSE-SU-2024_2189-1
SUSE-SU-2024:2008-1
SUSE-SU-2024:2010-1
SUSE-SU-2024:2011-1
SUSE-SU-2024:2019-1
SUSE-SU-2024:2185-1
SUSE-SU-2024:2189-1
SUSE-SU-2024:2190-1
SUSE-SU-2024:3559-1
SUSE-SU-2024:3566-1
SUSE-SU-2024:3591-1
SUSE-SU-2024_3559-1
SUSE-SU-2024_3591-1

Affected Products

Astra Linux
Linux Kernel
Suse