Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: soundwire: stream: fix memory leak in stream config error path When stream config is failed, master runtime will release all slave runtime in the slave_rt_list, but slave runtime is not added to the list at this time. This patch frees slave runtime in the config error path to fix the memory leak.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 4.18, < 4.19.191 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/2f17ac005b320c85d686088cfd4c2e7017912b88Patch
- https://git.kernel.org/stable/c/342260fe821047c3d515e3d28085d73fbdce3e80Patch
- https://git.kernel.org/stable/c/48f17f96a81763c7c8bf5500460a359b9939359fPatch
- https://git.kernel.org/stable/c/7c468deae306d0cbbd539408c26cfec04c66159aPatch
- https://git.kernel.org/stable/c/870533403ffa28ff63e173045fc5369365642002Patch
- https://git.kernel.org/stable/c/effd2bd62b416f6629e18e3ce077c60de14cfdeaPatch
- https://git.kernel.org/stable/c/2f17ac005b320c85d686088cfd4c2e7017912b88Patch
- https://git.kernel.org/stable/c/342260fe821047c3d515e3d28085d73fbdce3e80Patch
- https://git.kernel.org/stable/c/48f17f96a81763c7c8bf5500460a359b9939359fPatch
- https://git.kernel.org/stable/c/7c468deae306d0cbbd539408c26cfec04c66159aPatch
- https://git.kernel.org/stable/c/870533403ffa28ff63e173045fc5369365642002Patch
- https://git.kernel.org/stable/c/effd2bd62b416f6629e18e3ce077c60de14cfdeaPatch
FAQ
What is CVE-2021-47020?
CVE-2021-47020 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: soundwire: stream: fix memory leak in stream config error path When stream config is failed, master runtime will release all slave...
How severe is CVE-2021-47020?
CVE-2021-47020 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-47020?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.