CVE-2022-48846
Published: Jul 16, 2024
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: block: release rq qos structures for queue without disk blkcg_init_queue() may add rq qos structures to request queue, previously blk_cleanup_queue() calls rq_qos_exit() to release them, but commit 8e141f9eb803 ("block: drain file system I/O on del_gendisk") moves rq_qos_exit() into del_gendisk(), so memory leak is caused because queues may not have disk, such as un-present scsi luns, nvme admin queue, ... Fixes the issue by adding rq_qos_exit() to blk_cleanup_queue() back. BTW, v5.18 won't need this patch any more since we move blkcg_init_queue()/blkcg_exit_queue() into disk allocation/release handler, and patches have been in for-5.18/block.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 8e141f9eb803e209714a80aa6ec073893f94c526 - < d4ad8736ac982111bb0be8306bf19c8207f6600eaffected 8e141f9eb803e209714a80aa6ec073893f94c526 - < 60c2c8e2ef3a3ec79de8cbc80a06ca0c21df8c29affected 8e141f9eb803e209714a80aa6ec073893f94c526 - < daaca3522a8e67c46e39ef09c1d542e866f85f3b |
Linux | Linux | affected 5.15unaffected 0 - < 5.15unaffected 5.15.31 - <= 5.15.*unaffected 5.16.17 - <= 5.16.*unaffected 5.17 - <= * |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now