CVE-2021-47125

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Mar 15, 2024
Updated: Jan 7, 2025

Summary

CVE-2021-47125 is a vulnerability in the Linux kernel's sch_htb component. A NULL pointer dereference bug was identified and fixed in commit ae81feb7338c. However, the fix introduced an inconsistency between dev_queue->qdisc and cl->parent->leaf.q pointers, which can lead to refcount leaks. The correct fix involves adding a NULL pointer check to protect qdisc_refcount_inc inside htb_parent_to_leaf_offload.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share