In the Linux kernel, the following vulnerability has been resolved: block: fix memory leak in disk_register_independent_access_ranges kobject_init_and_add() takes reference even when it fails. According to the doc of kobject_init_and_add() If this function returns an error, kobject_put() must be called to properly clean up the memory associated with the object. Fix this issue by adding kobject_put(). Callback function blk_ia_ranges_sysfs_release() in kobject_put() can handle the pointer "iars" properly.
| Version | Score | Severity | Vector String |
|---|---|---|---|
| 3.1 | 5.3 | Medium | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L |
| Product | Vendor | Version |
|---|---|---|
| Linux | Linux | 14.1X55 prior to 14.1X55-D35 |
| Linux | Linux | 14.2 prior to 14.2R7 |
| Linux | Linux | earlier than 8.0.0.148(C635) |
| Linux | Linux | earlier than 8.0.0.155(C185) |