io_uring use work_flags to determine which identity need to grab from the calling process to make sure it is consistent with the calling process when executing IORING_OP. Some operations are missing some types, which can lead to incorrect reference counts which can then lead to a double free. We recommend upgrading the kernel past commit df3f3bb5059d20ef094d6b2f0256c4bf4127a859
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 21 Apr 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Google

Published:

Updated: 2025-04-21T13:51:20.067Z

Reserved: 2022-07-06T00:00:00.000Z

Link: CVE-2022-2327

cve-icon Vulnrichment

Updated: 2024-08-03T00:32:09.619Z

cve-icon NVD

Status : Modified

Published: 2022-07-22T10:15:08.257

Modified: 2024-11-21T07:00:46.610

Link: CVE-2022-2327

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.