An issue was discovered in the Linux kernel before 5.8.2. fs/io_uring.c has a use-after-free related to io_async_task_func and ctx reference holding. Reference: https://sites.google.com/view/syzscope/kasan-use-after-free-read-in-io_async_task_func Upstream patch: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=6d816e088c359866f9867057e04f244c608c42fe
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 1969498]
This was fixed for Fedora with the 5.7.16 stable kernel updates.