Back to search
CVE-2022-23090
Published: Feb 15, 2024
Modified: Mar 28, 2025
PUBLISHED
Description
The aio_aqueue function, used by the lio_listio system call, fails to release a reference to a credential in an error case. An attacker may cause the reference count to overflow, leading to a use after free (UAF).
| Vendor | Product | Versions |
|---|---|---|
FreeBSD | FreeBSD | affected 13.1-RELEASE - < p1affected 13.0-RELEASE - < p12affected 12.3-RELEASE - < p6 |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now