U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2021-47295

Change History

New CVE Received by NIST 5/21/2024 11:15:17 AM

Action Type Old Value New Value
Added Description

								
							
							
						
In the Linux kernel, the following vulnerability has been resolved:

net: sched: fix memory leak in tcindex_partial_destroy_work

Syzbot reported memory leak in tcindex_set_parms(). The problem was in
non-freed perfect hash in tcindex_partial_destroy_work().

In tcindex_set_parms() new tcindex_data is allocated and some fields from
old one are copied to new one, but not the perfect hash. Since
tcindex_partial_destroy_work() is the destroy function for old
tcindex_data, we need to free perfect hash to avoid memory leak.
Added Reference

								
							
							
						
kernel.org https://git.kernel.org/stable/c/8d7924ce85bae64e7a67c366c7c50840f49f3a62 [No types assigned]
Added Reference

								
							
							
						
kernel.org https://git.kernel.org/stable/c/8e9662fde6d63c78eb1350f6167f64c9d71a865b [No types assigned]
Added Reference

								
							
							
						
kernel.org https://git.kernel.org/stable/c/cac71d27745f92ee13f0ecc668ffe151a4a9c9b1 [No types assigned]
Added Reference

								
							
							
						
kernel.org https://git.kernel.org/stable/c/f5051bcece50140abd1a11a2d36dc3ec5484fc32 [No types assigned]