CVE-2021-47313

HIGH

Linux Kernel 5.11-5.12.18 - Uncontrolled Resource Consumption in CPPC CPUFreq Initialization

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: cpufreq: CPPC: Fix potential memleak in cppc_cpufreq_cpu_init It's a classic example of memleak, we allocate something, we fail and never free the resources. Make sure we free all resources on policy ->init() failures.

Scores

CVSS v3 8.4
EPSS 0.0026
EPSS Percentile 17.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-400
Status published
Products (9)
Linux/Linux < 5.11
Linux/Linux 5.11
Linux/Linux 5.12.19 - 5.12.*
Linux/Linux 5.13.4 - 5.13.*
Linux/Linux 5.14
Linux/Linux a28b2bfc099c6b9caa6ef697660408e076a32019 - b775383355755885b19d2acef977f1ca132e80a3
Linux/Linux a28b2bfc099c6b9caa6ef697660408e076a32019 - e1b2b2b61d30d7ce057ec17237c217d152ed97f2
Linux/Linux a28b2bfc099c6b9caa6ef697660408e076a32019 - fe2535a44904a77615a3af8e8fd7dafb98fb0e1b
linux/linux_kernel 5.11 - 5.12.19
Published May 21, 2024
Tracked Since Feb 18, 2026