A memory leak flaw was found in the Linux kernel’s io_uring functionality in how a user registers a buffer ring with IORING_REGISTER_PBUF_RING, mmap() it, and then frees it. This flaw allows a local user to crash or potentially escalate their privileges on the system.
Version | Score | Severity | Vector String |
---|---|---|---|
3.1 | 7.8 | High | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Product | Vendor | Version |
---|---|---|
10.16.0.80 | ||
Red Hat Enterprise Linux 6 | Red Hat | < cd34a07f744451e2ecf9005bb7d24d0b2fb83656 |
Red Hat Enterprise Linux 7 | Red Hat | < 9b6412e6979f6f9e0632075f8f008937b5cd4efd |
Red Hat Enterprise Linux 8 | Red Hat | n/a |
Red Hat Enterprise Linux 9 | Red Hat | 14.0.0 |
Red Hat Enterprise Linux 8 | Red Hat | n/a |
Red Hat Enterprise Linux 7 | Red Hat | 12.0.3 |
Red Hat Enterprise Linux 9 | Red Hat | < 5.19 |