CVE Database
/

CVE-2021-47364

Back to search

CVE-2021-47364

Published: May 21, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: comedi: Fix memory leak in compat_insnlist() `compat_insnlist()` handles the 32-bit version of the `COMEDI_INSNLIST` ioctl (whenwhen `CONFIG_COMPAT` is enabled). It allocates memory to temporarily hold an array of `struct comedi_insn` converted from the 32-bit version in user space. This memory is only being freed if there is a fault while filling the array, otherwise it is leaked. Add a call to `kfree()` to fix the leak.

VendorProductVersions

Linux

Linux

affected
b8d47d8813055ce38c0d2ad913d5462017e52692 - < 8d6a21e4cd6a319b0662cbe4ad6199e276ac776a
affected
b8d47d8813055ce38c0d2ad913d5462017e52692 - < f217b6c1e28ed0b353634ce4d92a155b80bd1671
affected
b8d47d8813055ce38c0d2ad913d5462017e52692 - < bb509a6ffed2c8b0950f637ab5779aa818ed1596

Linux

Linux

affected
5.8
unaffected
0 - < 5.8
unaffected
5.10.70 - <= 5.10.*
unaffected
5.14.9 - <= 5.14.*
unaffected
5.15 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now