PT-2024-11421 · Linux+2 · Linux Kernel+2

Jamie Iles

·

Published

2021-09-22

·

Updated

2024-09-16

·

CVE-2021-47425

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A resource leak in the Linux kernel has been resolved. The issue occurs when acpi i2c find adapter by handle() calls bus find device(), which takes a reference on the adapter that is never released, resulting in a reference count leak and rendering the adapter unremovable. The fix involves putting the adapter after creating the client in the same manner as it is done for OF.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Leak

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-14383
CVE-2021-47425
OESA-2024-1736
OPENSUSE-SU-2024_2185-1
OPENSUSE-SU-2024_2189-1
SUSE-SU-2024:2008-1
SUSE-SU-2024:2010-1
SUSE-SU-2024:2011-1
SUSE-SU-2024:2019-1
SUSE-SU-2024:2183-1
SUSE-SU-2024:2185-1
SUSE-SU-2024:2189-1
SUSE-SU-2024:2190-1
SUSE-SU-2024:3189-1
SUSE-SU-2024:3251-1
SUSE-SU-2024:3252-1

Affected Products

Astra Linux
Linux Kernel
Suse