CVE Database
/

CVE-2021-47321

Back to search

CVE-2021-47321

Published: May 21, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: watchdog: Fix possible use-after-free by calling del_timer_sync() This driver's remove path calls del_timer(). However, that function does not wait until the timer handler finishes. This means that the timer handler may still be running after the driver's remove function has finished, which would result in a use-after-free. Fix by calling del_timer_sync(), which makes sure the timer handler has finished, and unable to re-schedule itself.

VendorProductVersions

Linux

Linux

affected
7c25f8c9f67708e6464d2221bc311cbd99e950dc - < 58606882ad8ec6c39e0f40344b922921ef94ab4d
affected
7c25f8c9f67708e6464d2221bc311cbd99e950dc - < ca96b8ea5e74956071154bdb456778cc3027e79f
affected
7c25f8c9f67708e6464d2221bc311cbd99e950dc - < 8bec568d7518b1504a602ed5376bb322e4dbb270
affected
7c25f8c9f67708e6464d2221bc311cbd99e950dc - < ecd620e0fb1ff7f78fdb593379b2e6938c99707a
affected
7c25f8c9f67708e6464d2221bc311cbd99e950dc - < db222f1477ad5692cd454709b714949807e5d111

+4 more versions

Linux

Linux

affected
4.3
unaffected
0 - < 4.3
unaffected
4.4.276 - <= 4.4.*
unaffected
4.9.276 - <= 4.9.*
unaffected
4.14.240 - <= 4.14.*

+6 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now