CVE-2021-47342

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
21/05/2024
Last modified:
26/12/2024

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> ext4: fix possible UAF when remounting r/o a mmp-protected file system<br /> <br /> After commit 618f003199c6 ("ext4: fix memory leak in<br /> ext4_fill_super"), after the file system is remounted read-only, there<br /> is a race where the kmmpd thread can exit, causing sbi-&gt;s_mmp_tsk to<br /> point at freed memory, which the call to ext4_stop_mmpd() can trip<br /> over.<br /> <br /> Fix this by only allowing kmmpd() to exit when it is stopped via<br /> ext4_stop_mmpd().<br /> <br /> Bug-Report-Link:

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.10.77 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.11 (including) 5.13.3 (excluding)