Hide Forgot
A flaw was found in the io-workqueue implementation in the Linux kernel. The kernel can panic when an improper cancellation operation triggers the submission of new io-uring operations during a shortage of free space. This allows a local user with permissions to execute io-uring requests to possible crash the system. Statement: Red Hat has not implemented io-uring in any shipping products however it appears to be enabled in the Fedora Project. References: https://git.kernel.dk/cgit/linux-block/commit/?h=io_uring-5.15&id=713b9825a4c47897f66ad69409581e7734a8728e https://lkml.org/lkml/2021/9/8/64
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 2026810]
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2021-4023
This was fixed for Fedora with the 5.14.6 stable kernel updates.