vulnerability
Ubuntu: (CVE-2021-47467): linux-fips vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:N/AC:L/Au:N/C:N/I:N/A:P) | May 22, 2024 | Jun 26, 2025 | Jun 27, 2025 |
Description
In the Linux kernel, the following vulnerability has been resolved:
kunit: fix reference count leak in kfree_at_end
The reference counting issue happens in the normal path of
kfree_at_end(). When kunit_alloc_and_get_resource() is invoked, the
function forgets to handle the returned resource object, whose refcount
increased inside, causing a refcount leak.
Fix this issue by calling kunit_alloc_resource() instead of
kunit_alloc_and_get_resource().
Fixed the following when applying:
Shuah Khan <[email protected]>
CHECK: Alignment should match open parenthesis
+ kunit_alloc_resource(test, NULL, kfree_res_free, GFP_KERNEL,
(void *)to_free);
Solution
References
- CVE-2021-47467
- https://attackerkb.com/topics/CVE-2021-47467
- URL-https://git.kernel.org/linus/f62314b1ced25c58b86e044fc951cd6a1ea234cf
- URL-https://git.kernel.org/stable/c/bbdd158b40b66a9403391a517f24ef6613573446
- URL-https://git.kernel.org/stable/c/f62314b1ced25c58b86e044fc951cd6a1ea234cf
- URL-https://www.cve.org/CVERecord?id=CVE-2021-47467
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.