Back to bug 2127890

Who When What Removed Added
Alex 2022-09-19 10:07:21 UTC Depends On 2127891
Alex 2022-09-19 10:28:10 UTC CC bdettelb, bhu, brdeoliv, chwhite, ddepaula, debarbos, dhoward, dvlasenk, fhrbata, hkrzesin, jarod, jburrell, jfaracco, jferlan, jlelli, joe.lawrence, jshortt, jstancek, jwyatt, kcarcia, kernel-mgr, lleshchi, lzampier, nmurray, qzhao, rvrbovsk, scweaver, swood, tyberry, vkumar, walters, williams
Alex 2022-09-19 10:30:17 UTC Depends On 2127898, 2127899
Alex 2022-09-19 10:31:00 UTC Doc Text A flaw use-after-free in io_uring in the Linux kernel found.
Local user can trigger it if a signalfd or binder fd is polled with io_uring poll, because of lack io_uring POLLFREE handling.
RaTasha Tillery-Smith 2022-09-20 12:28:55 UTC Doc Text A flaw use-after-free in io_uring in the Linux kernel found.
Local user can trigger it if a signalfd or binder fd is polled with io_uring poll, because of lack io_uring POLLFREE handling.
A use-after-free flaw was found in io_uring in the Linux kernel. This flaw allows a local user to trigger the issue if a signalfd or binder fd is polled with the io_uring poll due to a lack of io_uring POLLFREE handling.
Red Hat Bugzilla 2022-12-31 23:34:50 UTC CC fhrbata
Red Hat Bugzilla 2023-04-01 08:39:55 UTC CC dhoward
Red Hat Bugzilla 2023-07-07 08:31:59 UTC Assignee security-response-team nobody

Back to bug 2127890