Unrated severityNVD Advisory· Published May 21, 2024· Updated Dec 18, 2025
scsi: iscsi: Fix conn use after free during resets
CVE-2021-47328
Description
In the Linux kernel, the following vulnerability has been resolved:
scsi: iscsi: Fix conn use after free during resets
If we haven't done a unbind target call we can race where iscsi_conn_teardown wakes up the EH thread and then frees the conn while those threads are still accessing the conn ehwait.
We can only do one TMF per session so this just moves the TMF fields from the conn to the session. We can then rely on the iscsi_session_teardown->iscsi_remove_session->__iscsi_unbind_session call to remove the target and it's devices, and know after that point there is no device or scsi-ml callout trying to access the session.
Affected products
90- osv-coords89 versionspkg:rpm/suse/kernel-64kb&distro=SUSE%20Enterprise%20Storage%207.1pkg:rpm/suse/kernel-64kb&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP3-LTSSpkg:rpm/suse/kernel-64kb&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP3-LTSSpkg:rpm/suse/kernel-azure&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/kernel-azure&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/kernel-default-base&distro=SUSE%20Enterprise%20Storage%207.1pkg:rpm/suse/kernel-default-base&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP2-LTSSpkg:rpm/suse/kernel-default-base&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP3-LTSSpkg:rpm/suse/kernel-default-base&distro=SUSE%20Linux%20Enterprise%20Micro%205.1pkg:rpm/suse/kernel-default-base&distro=SUSE%20Linux%20Enterprise%20Micro%205.2pkg:rpm/suse/kernel-default-base&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP2-LTSSpkg:rpm/suse/kernel-default-base&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP3-LTSSpkg:rpm/suse/kernel-default-base&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP2pkg:rpm/suse/kernel-default-base&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP3pkg:rpm/suse/kernel-default&distro=SUSE%20Enterprise%20Storage%207.1pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2012%20SP5pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2015%20SP2pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2015%20SP3pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP2-LTSSpkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP3-LTSSpkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2012%20SP5pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015%20SP2pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015%20SP3pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Micro%205.1pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Micro%205.2pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP2-LTSSpkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP3-LTSSpkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP2pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP3pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP5pkg:rpm/suse/kernel-docs&distro=SUSE%20Enterprise%20Storage%207.1pkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP2-LTSSpkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP3-LTSSpkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP2-LTSSpkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP3-LTSSpkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP2pkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP3pkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5pkg:rpm/suse/kernel-livepatch-SLE15-SP2_Update_50&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015%20SP2pkg:rpm/suse/kernel-livepatch-SLE15-SP3_Update_46&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015%20SP3pkg:rpm/suse/kernel-obs-build&distro=SUSE%20Enterprise%20Storage%207.1pkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP2-LTSSpkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP3-LTSSpkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP2-LTSSpkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP3-LTSSpkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP2pkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP3pkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5pkg:rpm/suse/kernel-preempt&distro=SUSE%20Enterprise%20Storage%207.1pkg:rpm/suse/kernel-preempt&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP2-LTSSpkg:rpm/suse/kernel-preempt&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP3-LTSSpkg:rpm/suse/kernel-preempt&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP2-LTSSpkg:rpm/suse/kernel-preempt&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP3-LTSSpkg:rpm/suse/kernel-preempt&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP2pkg:rpm/suse/kernel-preempt&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP3pkg:rpm/suse/kernel-rt_debug&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP5pkg:rpm/suse/kernel-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.1pkg:rpm/suse/kernel-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.2pkg:rpm/suse/kernel-rt&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP5pkg:rpm/suse/kernel-source-azure&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/kernel-source-azure&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/kernel-source&distro=SUSE%20Enterprise%20Storage%207.1pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP2-LTSSpkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP3-LTSSpkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP2-LTSSpkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP3-LTSSpkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP2pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP3pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.1pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Linux%20Enterprise%20Micro%205.2pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP5pkg:rpm/suse/kernel-syms-azure&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/kernel-syms-azure&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/kernel-syms&distro=SUSE%20Enterprise%20Storage%207.1pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP2-LTSSpkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP3-LTSSpkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP2-LTSSpkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP3-LTSSpkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP2pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP3pkg:rpm/suse/kernel-syms-rt&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2012%20SP5pkg:rpm/suse/kernel-zfcpdump&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP3-LTSSpkg:rpm/suse/kgraft-patch-SLE12-SP5_Update_58&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2012%20SP5
< 5.3.18-150300.59.167.1+ 88 more
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 4.12.14-16.191.1
- (no CPE)range: < 4.12.14-16.191.1
- (no CPE)range: < 5.3.18-150300.59.167.1.150300.18.98.1
- (no CPE)range: < 5.3.18-150200.24.197.1.150200.9.101.1
- (no CPE)range: < 5.3.18-150300.59.167.1.150300.18.98.1
- (no CPE)range: < 5.3.18-150300.59.167.1.150300.18.98.1
- (no CPE)range: < 5.3.18-150300.59.167.1.150300.18.98.1
- (no CPE)range: < 5.3.18-150200.24.197.1.150200.9.101.1
- (no CPE)range: < 5.3.18-150300.59.167.1.150300.18.98.1
- (no CPE)range: < 5.3.18-150200.24.197.1.150200.9.101.1
- (no CPE)range: < 5.3.18-150300.59.167.1.150300.18.98.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 4.12.14-122.222.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 4.12.14-122.222.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 4.12.14-122.222.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 4.12.14-122.222.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 4.12.14-122.222.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 4.12.14-122.222.1
- (no CPE)range: < 1-150200.5.3.1
- (no CPE)range: < 1-150300.7.3.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 4.12.14-122.222.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 4.12.14-10.191.1
- (no CPE)range: < 5.3.18-150300.175.1
- (no CPE)range: < 5.3.18-150300.175.1
- (no CPE)range: < 4.12.14-10.191.1
- (no CPE)range: < 4.12.14-16.191.1
- (no CPE)range: < 4.12.14-16.191.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 4.12.14-122.222.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 4.12.14-122.222.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150300.175.1
- (no CPE)range: < 5.3.18-150300.175.1
- (no CPE)range: < 4.12.14-10.191.1
- (no CPE)range: < 4.12.14-16.191.1
- (no CPE)range: < 4.12.14-16.191.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 4.12.14-122.222.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 4.12.14-122.222.1
- (no CPE)range: < 5.3.18-150200.24.197.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 4.12.14-10.191.1
- (no CPE)range: < 5.3.18-150300.59.167.1
- (no CPE)range: < 1-8.3.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- git.kernel.org/stable/c/89812e7957ab0746eab66ed6fc49d52bb4dca250mitre
- git.kernel.org/stable/c/bf20d85a88384574fabb3d53ad62a8af57e7ab11mitre
- git.kernel.org/stable/c/d04958a348e560938410e04a12fb99da9c7e6a00mitre
- git.kernel.org/stable/c/ec29d0ac29be366450a7faffbcf8cba3a6a3b506mitre
- git.kernel.org/stable/c/f0a031f7c55ffd944fead1ddaf2aa94df9a158c1mitre
- git.kernel.org/stable/c/fa9542b35ceb4202e8f8d65f440529a63524dca9mitre
News mentions
0No linked articles in our index yet.