CVE-2021-47330

MEDIUM

Linux Kernel < 4.4.276 - Use-After-Free in Serial 8250 Driver Error Handling

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: tty: serial: 8250: serial_cs: Fix a memory leak in error handling path In the probe function, if the final 'serial_config()' fails, 'info' is leaking. Add a resource handling path to free this memory.

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 15.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-401
Status published
Products (21)
Linux/Linux < 2.6.17
Linux/Linux 15b99ac1729503db9e6dc642a50b9b6cb3bf51f9 - 331f5923fce4f45b8170ccf06c529e8eb28f37bc
Linux/Linux 15b99ac1729503db9e6dc642a50b9b6cb3bf51f9 - 34f4590f5ec9859ea9136249f528173d150bd584
Linux/Linux 15b99ac1729503db9e6dc642a50b9b6cb3bf51f9 - 7a80f71601af015856a0aeb1e3c294037ac3dd32
Linux/Linux 15b99ac1729503db9e6dc642a50b9b6cb3bf51f9 - b2ef1f5de40342de44fc5355321595f91774dab5
Linux/Linux 15b99ac1729503db9e6dc642a50b9b6cb3bf51f9 - b5a2799cd62ed30c81b22c23028d9ee374e2138c
Linux/Linux 15b99ac1729503db9e6dc642a50b9b6cb3bf51f9 - c39cf4df19acf0133fa284a8cd83fad42cd13cc2
Linux/Linux 15b99ac1729503db9e6dc642a50b9b6cb3bf51f9 - cddee5c287e26f6b2ba5c0ffdfc3a846f2f10461
Linux/Linux 15b99ac1729503db9e6dc642a50b9b6cb3bf51f9 - ee16bed959862a6de2913f71a04cb563d7237b67
Linux/Linux 15b99ac1729503db9e6dc642a50b9b6cb3bf51f9 - fad92b11047a748c996ebd6cfb164a63814eeb2e
... and 11 more
Published May 21, 2024
Tracked Since Feb 18, 2026