[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2021-47089":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T02:53:27.892Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":20,"aliases":21,"duplicate_of":9,"upstream":22,"downstream":23,"duplicates":34,"related":35,"reserved_at":9,"published_at":39,"modified_at":40,"state":41,"summary":42,"references_raw":50,"kevs":61,"epss":62,"epss_history":65,"metrics":326,"affected":334},"CVE-2021-47089","In the Linux kernel, the following vulnerability has been resolved:\n\nkfence: fix memory leak when cat kfence objects\n\nHulk robot reported a kmemleak problem:\n\n    unreferenced object 0xffff93d1d8cc02e8 (size 248):\n      comm \"cat\", pid 23327, jiffies 4624670141 (age 495992.217s)\n      hex dump (first 32 bytes):\n        00 40 85 19 d4 93 ff ff 00 10 00 00 00 00 00 00  .@..............\n        00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................\n      backtrace:\n         seq_open+0x2a/0x80\n         full_proxy_open+0x167/0x1e0\n         do_dentry_open+0x1e1/0x3a0\n         path_openat+0x961/0xa20\n         do_filp_open+0xae/0x120\n         do_sys_openat2+0x216/0x2f0\n         do_sys_open+0x57/0x80\n         do_syscall_64+0x33/0x40\n         entry_SYSCALL_64_after_hwframe+0x44/0xa9\n    unreferenced object 0xffff93d419854000 (size 4096):\n      comm \"cat\", pid 23327, jiffies 4624670141 (age 495992.217s)\n      hex dump (first 32 bytes):\n        6b 66 65 6e 63 65 2d 23 32 35 30 3a 20 30 78 30  kfence-#250: 0x0\n        30 30 30 30 30 30 30 37 35 34 62 64 61 31 32 2d  0000000754bda12-\n      backtrace:\n         seq_read_iter+0x313/0x440\n         seq_read+0x14b/0x1a0\n         full_proxy_read+0x56/0x80\n         vfs_read+0xa5/0x1b0\n         ksys_read+0xa0/0xf0\n         do_syscall_64+0x33/0x40\n         entry_SYSCALL_64_after_hwframe+0x44/0xa9\n\nI find that we can easily reproduce this problem with the following\ncommands:\n\n\tcat /sys/kernel/debug/kfence/objects\n\techo scan > /sys/kernel/debug/kmemleak\n\tcat /sys/kernel/debug/kmemleak\n\nThe leaked memory is allocated in the stack below:\n\n    do_syscall_64\n      do_sys_open\n        do_dentry_open\n          full_proxy_open\n            seq_open            ---> alloc seq_file\n      vfs_read\n        full_proxy_read\n          seq_read\n            seq_read_iter\n              traverse          ---> alloc seq_buf\n\nAnd it should have been released in the following process:\n\n    do_syscall_64\n      syscall_exit_to_user_mode\n        exit_to_user_mode_prepare\n          task_work_run\n            ____fput\n              __fput\n                full_proxy_release  ---> free here\n\nHowever, the release function corresponding to file_operations is not\nimplemented in kfence.  As a result, a memory leak occurs.  Therefore,\nthe solution to this problem is to implement the corresponding release\nfunction.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-401","Missing Release of Memory after Effective Lifetime","The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.","weakness","Draft","Variant","Medium",[],[],[],[],[24,26,28,30,32],{"_key":25},"UBUNTU-CVE-2021-47089",{"_key":27},"SUSE-SU-2024:2372-1",{"_key":29},"SUSE-SU-2024:2394-1",{"_key":31},"SUSE-SU-2024:2939-1",{"_key":33},"DEBIAN-CVE-2021-47089",[],[36,37,38],{"_key":27},{"_key":29},{"_key":31},"2024-03-04T18:10:27.495Z","2026-05-11T13:47:49.944Z","Analyzed",{"cisa_kev":43,"cisa_ransomware":43,"cisa_vendor":9,"epss_severity":44,"epss_score":45,"severity":44,"severity_score":46,"severity_version":47,"severity_source":48,"severity_vector":49,"severity_status":41},false,"low",0.00017,3.3,"v3.1","cve.org","CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L",[51,57],{"url":52,"sources":53,"tags":55},"https://git.kernel.org/stable/c/2f06c8293d27f6337f907042c602c9c953988c48",[48,54],"nvd",[56],"Patch",{"url":58,"sources":59,"tags":60},"https://git.kernel.org/stable/c/0129ab1f268b6cf88825eae819b9b84aa0a85634",[48,54],[56],[],{"date":63,"score":45,"percentile":64},"2026-06-03",0.04352,[66,69,72,75,78,81,84,87,90,93,96,99,102,104,107,111,114,117,120,123,126,129,132,135,138,141,144,147,150,153,156,159,162,165,168,171,174,177,180,183,186,189,192,195,198,201,203,206,209,212,215,218,221,224,226,229,232,235,237,240,244,247,250,253,256,258,261,264,267,270,273,275,277,279,282,284,287,289,292,294,297,300,303,306,309,312,315,317,320,323],{"date":67,"score":45,"percentile":68},"2025-11-04",0.02898,{"date":70,"score":45,"percentile":71},"2025-11-05",0.02922,{"date":73,"score":45,"percentile":74},"2025-11-06",0.0295,{"date":76,"score":45,"percentile":77},"2025-11-07",0.02954,{"date":79,"score":45,"percentile":80},"2025-11-08",0.02962,{"date":82,"score":45,"percentile":83},"2025-11-09",0.02966,{"date":85,"score":45,"percentile":86},"2025-11-10",0.02946,{"date":88,"score":45,"percentile":89},"2025-11-11",0.0297,{"date":91,"score":45,"percentile":92},"2025-11-12",0.02983,{"date":94,"score":45,"percentile":95},"2025-11-13",0.0301,{"date":97,"score":45,"percentile":98},"2025-11-14",0.03031,{"date":100,"score":45,"percentile":101},"2025-11-15",0.03059,{"date":103,"score":45,"percentile":101},"2025-11-16",{"date":105,"score":45,"percentile":106},"2025-11-17",0.03046,{"date":108,"score":109,"percentile":110},"2025-11-18",0.00053,0.11878,{"date":112,"score":109,"percentile":113},"2025-11-19",0.11895,{"date":115,"score":109,"percentile":116},"2025-11-20",0.11916,{"date":118,"score":45,"percentile":119},"2025-11-21",0.03131,{"date":121,"score":45,"percentile":122},"2025-11-22",0.0313,{"date":124,"score":45,"percentile":125},"2025-11-23",0.03124,{"date":127,"score":45,"percentile":128},"2025-11-24",0.03113,{"date":130,"score":45,"percentile":131},"2025-11-25",0.031,{"date":133,"score":45,"percentile":134},"2025-11-26",0.03088,{"date":136,"score":45,"percentile":137},"2025-11-27",0.0309,{"date":139,"score":45,"percentile":140},"2025-11-28",0.03093,{"date":142,"score":45,"percentile":143},"2025-11-29",0.0314,{"date":145,"score":45,"percentile":146},"2025-11-30",0.03141,{"date":148,"score":45,"percentile":149},"2025-12-01",0.03215,{"date":151,"score":45,"percentile":152},"2025-12-02",0.03214,{"date":154,"score":45,"percentile":155},"2025-12-03",0.03218,{"date":157,"score":45,"percentile":158},"2025-12-04",0.03148,{"date":160,"score":45,"percentile":161},"2025-12-05",0.03176,{"date":163,"score":45,"percentile":164},"2025-12-06",0.03192,{"date":166,"score":45,"percentile":167},"2025-12-07",0.03198,{"date":169,"score":45,"percentile":170},"2025-12-08",0.032,{"date":172,"score":45,"percentile":173},"2025-12-09",0.03228,{"date":175,"score":45,"percentile":176},"2025-12-10",0.03261,{"date":178,"score":45,"percentile":179},"2025-12-11",0.03265,{"date":181,"score":45,"percentile":182},"2025-12-12",0.03269,{"date":184,"score":45,"percentile":185},"2025-12-13",0.0324,{"date":187,"score":45,"percentile":188},"2025-12-14",0.03236,{"date":190,"score":45,"percentile":191},"2025-12-15",0.03222,{"date":193,"score":45,"percentile":194},"2025-12-16",0.03226,{"date":196,"score":45,"percentile":197},"2025-12-17",0.03257,{"date":199,"score":45,"percentile":200},"2025-12-18",0.03263,{"date":202,"score":45,"percentile":200},"2025-12-19",{"date":204,"score":45,"percentile":205},"2025-12-20",0.03262,{"date":207,"score":45,"percentile":208},"2025-12-21",0.03276,{"date":210,"score":45,"percentile":211},"2025-12-22",0.03258,{"date":213,"score":45,"percentile":214},"2025-12-23",0.0327,{"date":216,"score":45,"percentile":217},"2025-12-24",0.03281,{"date":219,"score":45,"percentile":220},"2025-12-25",0.03298,{"date":222,"score":45,"percentile":223},"2025-12-26",0.03297,{"date":225,"score":45,"percentile":217},"2025-12-27",{"date":227,"score":45,"percentile":228},"2025-12-28",0.03289,{"date":230,"score":45,"percentile":231},"2025-12-29",0.0328,{"date":233,"score":45,"percentile":234},"2025-12-30",0.03256,{"date":236,"score":45,"percentile":197},"2025-12-31",{"date":238,"score":45,"percentile":239},"2026-01-01",0.03333,{"date":241,"score":242,"percentile":243},"2026-01-02",0.0001,0.00833,{"date":245,"score":242,"percentile":246},"2026-01-03",0.00836,{"date":248,"score":242,"percentile":249},"2026-01-04",0.00824,{"date":251,"score":242,"percentile":252},"2026-01-05",0.0083,{"date":254,"score":242,"percentile":255},"2026-01-06",0.00826,{"date":257,"score":242,"percentile":255},"2026-01-07",{"date":259,"score":242,"percentile":260},"2026-01-08",0.00832,{"date":262,"score":242,"percentile":263},"2026-01-09",0.00843,{"date":265,"score":242,"percentile":266},"2026-01-10",0.00847,{"date":268,"score":242,"percentile":269},"2026-01-11",0.00846,{"date":271,"score":242,"percentile":272},"2026-01-12",0.00842,{"date":274,"score":242,"percentile":263},"2026-01-13",{"date":276,"score":242,"percentile":263},"2026-01-14",{"date":278,"score":242,"percentile":269},"2026-01-15",{"date":280,"score":242,"percentile":281},"2026-01-16",0.00845,{"date":283,"score":242,"percentile":281},"2026-01-17",{"date":285,"score":242,"percentile":286},"2026-01-18",0.0085,{"date":288,"score":242,"percentile":269},"2026-01-19",{"date":290,"score":242,"percentile":291},"2026-01-20",0.0084,{"date":293,"score":242,"percentile":246},"2026-01-21",{"date":295,"score":242,"percentile":296},"2026-01-22",0.00838,{"date":298,"score":242,"percentile":299},"2026-01-23",0.00848,{"date":301,"score":242,"percentile":302},"2026-01-24",0.00856,{"date":304,"score":242,"percentile":305},"2026-01-25",0.00857,{"date":307,"score":242,"percentile":308},"2026-01-26",0.00859,{"date":310,"score":242,"percentile":311},"2026-01-27",0.00864,{"date":313,"score":242,"percentile":314},"2026-01-28",0.00861,{"date":316,"score":242,"percentile":311},"2026-01-29",{"date":318,"score":242,"percentile":319},"2026-01-30",0.00876,{"date":321,"score":242,"percentile":322},"2026-01-31",0.00882,{"date":324,"score":242,"percentile":325},"2026-02-01",0.00891,[327,332],{"source":48,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":328,"cvss_v4_0":9},{"baseScore":46,"baseSeverity":329,"vectorString":49,"impactScore":330,"exploitabilityScore":331},"LOW",2.3,4.6,{"source":54,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":333,"cvss_v4_0":9},{"baseScore":46,"baseSeverity":329,"vectorString":49,"impactScore":330,"exploitabilityScore":331},[335,352],{"ecosystem":9,"name":336,"vendor":337,"product":337,"cpe_part":338,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":339},"Linux","linux","a",[340,347,350],{"version":341,"is_range":342,"range_type":48,"version_start":343,"version_start_type":344,"version_end":345,"version_end_type":346,"fixed_in":9},">= 0ce20dd840897b12ae70869c69f1ba34d6d16965, \u003C 2f06c8293d27f6337f907042c602c9c953988c48",true,"0ce20dd840897b12ae70869c69f1ba34d6d16965","including","2f06c8293d27f6337f907042c602c9c953988c48","excluding",{"version":348,"is_range":342,"range_type":48,"version_start":343,"version_start_type":344,"version_end":349,"version_end_type":346,"fixed_in":9},">= 0ce20dd840897b12ae70869c69f1ba34d6d16965, \u003C 0129ab1f268b6cf88825eae819b9b84aa0a85634","0129ab1f268b6cf88825eae819b9b84aa0a85634",{"version":351,"is_range":43,"range_type":48,"version_start":351,"version_start_type":344,"version_end":351,"version_end_type":344,"fixed_in":9},"5.12",{"ecosystem":9,"name":353,"vendor":337,"product":354,"cpe_part":355,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":356},"linux kernel","linux_kernel","o",[357,361,363,365,367,369,371],{"version":358,"is_range":342,"range_type":359,"version_start":351,"version_start_type":344,"version_end":360,"version_end_type":346,"fixed_in":9},"gte5.12_lt5.15.12","cpe","5.15.12",{"version":362,"is_range":43,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"5.16:rc1",{"version":364,"is_range":43,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"5.16:rc2",{"version":366,"is_range":43,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"5.16:rc3",{"version":368,"is_range":43,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"5.16:rc4",{"version":370,"is_range":43,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"5.16:rc5",{"version":372,"is_range":43,"range_type":359,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"5.16:rc6"]