CVE-2021-47360

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
21/05/2024
Last modified:
12/05/2025

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> binder: make sure fd closes complete<br /> <br /> During BC_FREE_BUFFER processing, the BINDER_TYPE_FDA object<br /> cleanup may close 1 or more fds. The close operations are<br /> completed using the task work mechanism -- which means the thread<br /> needs to return to userspace or the file object may never be<br /> dereferenced -- which can lead to hung processes.<br /> <br /> Force the binder thread back to userspace if an fd is closed during<br /> BC_FREE_BUFFER handling.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.0 (including) 5.4.150 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.5 (including) 5.10.70 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.11 (including) 5.14.9 (excluding)
cpe:2.3:o:linux:linux_kernel:4.20.1:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.15:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.15:rc2:*:*:*:*:*:*