CVE-2022-2327: Use-after-free in io_uring ad work_flags in Linux Kernel
iouring use workflags to determine which identity need to grab from the calling process to make sure it is consistent with the calling process when executing IORINGOP. Some operations are missing some types, which can lead to incorrect reference counts which can then lead to a double free. We recommend upgrading the kernel past commit df3f3bb5059d20ef094d6b2f0256c4bf4127a859
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Linux kernelto a version that resolves this vulnerability.Patch df3f3bb5059d20ef094d6b2f0256c4bf4127a859
Event History
Frequently Asked Questions
What level of access does an attacker need to exploit this issue?
The CVSS vector indicates local access and low privileges are required. No user interaction is required.
What is the potential impact if exploitation succeeds?
Successful exploitation can affect confidentiality, integrity, and availability at a high level. The flaw can lead to incorrect reference counts and a double free.
Which systems are identified as affected?
The listed software includes the Linux kernel and NetApp H300s, H500s, H700s, H410s, and H410c firmware. The provided data does not specify affected version ranges for these products.
What remediation is provided?
Upgrade the kernel past commit df3f3bb5059d20ef094d6b2f0256c4bf4127a859. The provided information does not identify an alternative mitigation when upgrading is not immediately possible.