UVI-2021-1000377

Source
https://data.gsd.id/UVI-2021-1000377
Import Source
https://github.com/cloudsecurityalliance/gsd-database/blob/main/2021/1000xxx/UVI-2021-1000377.json
JSON Data
https://api.osv.dev/v1/vulns/UVI-2021-1000377
Withdrawn
2025-02-13T01:55:48.475620Z
Published
2021-05-31T15:39:45.041586Z
Modified
2025-02-13T01:55:48.475620Z
Summary
spi: spi-zynqmp-gqspi: fix use-after-free in zynqmp_qspi_exec_op
Details

spi: spi-zynqmp-gqspi: fix use-after-free in zynqmpqspiexec_op

This is an automated ID intended to aid in discovery of potential security vulnerabilities. The actual impact and attack plausibility have not yet been proven. This ID is fixed in Linux Kernel version v5.10.37 by commit 1231279389b5e638bc3b66b9741c94077aed4b5a, it was introduced in version v5.10 by commit 1c26372e5aa9e53391a1f8fe0dc7cd93a7e5ba9e. For more details please see the references link.

References

Affected packages

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/
Events
Introduced
1c26372e5aa9e53391a1f8fe0dc7cd93a7e5ba9e
Limit
1231279389b5e638bc3b66b9741c94077aed4b5a

Affected versions

v5.*
v5.10
v5.10-rc1
v5.10-rc2
v5.10-rc3
v5.10-rc4
v5.10-rc5
v5.10-rc6
v5.10-rc7
v5.10.1
v5.10.10
v5.10.11
v5.10.12
v5.10.13
v5.10.14
v5.10.15
v5.10.16
v5.10.17
v5.10.18
v5.10.19
v5.10.2
v5.10.20
v5.10.21
v5.10.22
v5.10.23
v5.10.24
v5.10.25
v5.10.26
v5.10.27
v5.10.28
v5.10.29
v5.10.3
v5.10.30
v5.10.31
v5.10.32
v5.10.33
v5.10.34
v5.10.35
v5.10.36
v5.10.4
v5.10.5
v5.10.6
v5.10.7
v5.10.8
v5.10.9
v5.9
v5.9-rc5
v5.9-rc6
v5.9-rc7
v5.9-rc8

Database specific

source
"https://github.com/cloudsecurityalliance/gsd-database/blob/main/2021/1000xxx/UVI-2021-1000377.json"