An issue was discovered in fs/io_uring.c in the Linux kernel through 5.11.8. It allows attackers to cause a denial of service (deadlock) because exit may be waiting to park a SQPOLL thread, but concurrently that SQPOLL thread is waiting for a signal to start, aka CID-3ebba796fa25.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon Linux Ami 2 | — | Upgrade kernel-debuginfoUpgrade kernel-tools-debuginfoUpgrade kernel-livepatch-5.15.43-20.103Upgrade kernel-debuginfo-common-x86_64Upgrade bpftoolUpgrade kernel-develUpgrade kernel-debuginfo-common-aarch64Upgrade bpftool-debuginfoUpgrade kernel-headersUpgrade perf-debuginfoUpgrade perfUpgrade kernelUpgrade python-perf-debuginfoUpgrade python-perfUpgrade kernel-toolsUpgrade kernel-tools-devel | Apr 18, 2023 | Mar 20, 2021 |
| Debian | — | Upgrade linux | Jul 30, 2024 | Mar 20, 2021 |
| Ubuntu | — | Upgrade linux-image-5.10.0-1026-oemUpgrade linux-image-oem-20.04b | May 12, 2021 | Mar 20, 2021 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jan 20, 2025 | Mar 20, 2021 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub