CVE-2021-44733

Updated: 2024-11-30 03:46:30.312931

Description:

A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.15.11. This occurs because of a race condition in tee_shm_get_from_id during an attempt to free a shared memory object.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x MEDIUM 4.4
CVSS Version 3.x HIGH 7

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 7.0 HIGH Already Fixed 2024-01-18 13:10:05
CentOS 6 ELS kernel 2.6.32 7.0 HIGH Not Vulnerable 2022-04-01 15:47:00
CentOS 7 ELS kernel 3.10.0 7.0 HIGH Not Vulnerable 2024-07-01 10:21:17
CentOS 8.4 ELS kernel 4.18.0 7.0 HIGH Released CLSA-2023:1693426883 2023-08-30 17:18:06
CentOS 8.5 ELS kernel 4.18.0 7.0 HIGH Released CLSA-2023:1693424916 2023-08-30 17:17:26
CentOS Stream 8 ELS kernel 4.18.0 7.0 HIGH Already Fixed 2024-06-09 11:20:32
CloudLinux 6 ELS kernel 2.6.32 7.0 HIGH Not Vulnerable 2022-04-01 15:47:00
CloudLinux 7 ELS kernel 3.10.0 7.0 HIGH Ignored 2025-01-10 22:43:41
Oracle Linux 6 ELS kernel 2.6.32 7.0 HIGH Not Vulnerable 2022-04-01 15:47:00
Ubuntu 16.04 ELS linux-hwe 4.15.0 7.0 HIGH Already Fixed 2022-10-05 03:15:07
Total: 12