UBUNTU-CVE-2021-47058
Dashboard / Vulnerabilities / UBUNTU-CVE-2021-47058
Summary:
Details: In the Linux kernel, the following vulnerability has been resolved: regmap: set debugfs_name to NULL after it is freed There is a upstream commit cffa4b2122f5("regmap:debugfs: Fix a memory leak when calling regmap_attach_dev") that adds a if condition when create name for debugfs_name. With below function invoking logical, debugfs_name is freed in regmap_debugfs_exit(), but it is not created again because of the if condition introduced by above commit. regmap_reinit_cache() regmap_debugfs_exit() ... regmap_debugfs_init() So, set debugfs_name to NULL after it is freed.
References: https://ubuntu.com/security/CVE-2021-47058, https://git.kernel.org/linus/e41a962f82e7afb5b1ee644f48ad0b3aee656268, https://www.cve.org/CVERecord?id=CVE-2021-47058
Affected packages
Package
Name: linux-hwe-edge
Purl: pkg:deb/ubuntu/linux-hwe-edge?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
