CVE Database
/

CVE-2022-1786

Back to search

CVE-2022-1786

Published: May 31, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

A use-after-free flaw was found in the Linux kernel’s io_uring subsystem in the way a user sets up a ring with IORING_SETUP_IOPOLL with more than one task completing submissions on this ring. This flaw allows a local user to crash or escalate their privileges on the system.

VendorProductVersions

n/a

kernel

affected
kernel v5.10 and v5.11

Weaknesses (CWE)

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now