A use-after-free vulnerability in the Linux Kernel io_uring subsystem can be exploited to achieve local privilege escalation.
Both io_install_fixed_file and its callers call fput in a file in case of an error, causing a reference underflow which leads to a use-after-free vulnerability.
We recommend upgrading past commit 9d94c04c0db024922e886c9fd429659f22f48ea4.
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | Jul 30, 2024 | May 1, 2023 |
| Ubuntu | — | Upgrade linux-hwe-5.19Upgrade linux-lowlatencyUpgrade linux-starfiveUpgrade linux-riscvUpgrade linux-oracleUpgrade linux-raspiUpgrade linux-ibmUpgrade linux-kvmUpgrade linux-gcpUpgrade linux-lowlatency-hwe-5.19Upgrade linux-awsUpgrade linux-oem-6.0Upgrade linux-azureUpgrade linux | Nov 19, 2024 | May 1, 2023 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub