PT-2024-11420 · Linux+2 · Linux Kernel+2

Pj Waskiewicz

·

Published

2021-09-24

·

Updated

2024-06-25

·

CVE-2021-47424

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue arises when the VSI setup fails in i40e probe() as part of PF switch setup, causing the driver to attempt to free misc IRQ vectors in i40e clear interrupt scheme(). This results in a kernel Oops due to trying to free already-free IRQ vectors. The problem occurs because misc IRQ vectors were not allocated at that point. A check has been added in i40e clear interrupt scheme() for the I40E MISC IRQ REQUESTED PF state before calling i40e free misc vector(), which is set only if misc IRQ vectors were properly initialized.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Use of Uninitialized Resource

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-14382
CVE-2021-47424
OESA-2024-1705
OPENSUSE-SU-2024_2185-1
OPENSUSE-SU-2024_2189-1
SUSE-SU-2024:1979-1
SUSE-SU-2024:1983-1
SUSE-SU-2024:2008-1
SUSE-SU-2024:2010-1
SUSE-SU-2024:2011-1
SUSE-SU-2024:2019-1
SUSE-SU-2024:2183-1
SUSE-SU-2024:2184-1
SUSE-SU-2024:2185-1
SUSE-SU-2024:2189-1
SUSE-SU-2024:2190-1

Affected Products

Astra Linux
Linux Kernel
Suse