CVE-2021-47614
HIGHLinux Kernel 5.14 - Use-After-Free in RDMA/irdma PBLE Info List Handling
Title source: llmDescription
In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix a user-after-free in add_pble_prm When irdma_hmc_sd_one fails, 'chunk' is freed while its still on the PBLE info list. Add the chunk entry to the PBLE info list only after successful setting of the SD in irdma_hmc_sd_one.
References (2)
Core 2
Scores
CVSS v3
7.8
EPSS
0.0022
EPSS Percentile
12.1%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-416
Status
published
Products (7)
Linux/Linux
< 5.14
Linux/Linux
5.14
Linux/Linux
5.15.10 - 5.15.*
Linux/Linux
5.16
Linux/Linux
e8c4dbc2fcacf5a7468d312168bb120c27c38b32 - 11eebcf63e98fcf047a876a51d76afdabc3b8b9b
Linux/Linux
e8c4dbc2fcacf5a7468d312168bb120c27c38b32 - 1e11a39a82e95ce86f849f40dda0d9c0498cebd9
linux/linux_kernel
5.14 - 5.15.10
Published
Jun 19, 2024
Tracked Since
Feb 18, 2026