In the Linux kernel, the following vulnerability has been resolved:
io_uring: fix memory leak of uid in files registration
When there are no files for _iosqefilesscm() to process in the range, it'll free everything and return. However, it forgets to put uid.
[
{
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@0853bd6885c2f293d88aaa7f7f1702c959b31680",
"id": "CVE-2022-49144-24d89588",
"signature_version": "v1",
"target": {
"file": "fs/io_uring.c"
},
"signature_type": "Line",
"digest": {
"line_hashes": [
"221255045690552853345404380195809525010",
"21936254845235850788254163497743696891",
"114611846118937103879099348436125247957",
"87395115947601187895730132488508076571"
],
"threshold": 0.9
}
},
{
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@7fa8b228c3f30060b9f4b24bb9aaaf41b0ae83fe",
"id": "CVE-2022-49144-320849c9",
"signature_version": "v1",
"target": {
"function": "__io_sqe_files_scm",
"file": "fs/io_uring.c"
},
"signature_type": "Function",
"digest": {
"function_hash": "287852008562986179182300999679098520331",
"length": 976.0
}
},
{
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@7fa8b228c3f30060b9f4b24bb9aaaf41b0ae83fe",
"id": "CVE-2022-49144-4f4281bb",
"signature_version": "v1",
"target": {
"file": "fs/io_uring.c"
},
"signature_type": "Line",
"digest": {
"line_hashes": [
"221255045690552853345404380195809525010",
"21936254845235850788254163497743696891",
"114611846118937103879099348436125247957",
"87395115947601187895730132488508076571"
],
"threshold": 0.9
}
},
{
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b27de7011cb3ba14b047be2cee0ed8278368665b",
"id": "CVE-2022-49144-656ef39d",
"signature_version": "v1",
"target": {
"function": "__io_sqe_files_scm",
"file": "fs/io_uring.c"
},
"signature_type": "Function",
"digest": {
"function_hash": "326197906448757667107002734470331092083",
"length": 977.0
}
},
{
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@d6d7a517e81accf6ed22d55684baea763d2dbe43",
"id": "CVE-2022-49144-83a305c9",
"signature_version": "v1",
"target": {
"function": "__io_sqe_files_scm",
"file": "fs/io_uring.c"
},
"signature_type": "Function",
"digest": {
"function_hash": "287852008562986179182300999679098520331",
"length": 976.0
}
},
{
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@0853bd6885c2f293d88aaa7f7f1702c959b31680",
"id": "CVE-2022-49144-86f21cf1",
"signature_version": "v1",
"target": {
"function": "__io_sqe_files_scm",
"file": "fs/io_uring.c"
},
"signature_type": "Function",
"digest": {
"function_hash": "287852008562986179182300999679098520331",
"length": 976.0
}
},
{
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@c86d18f4aa93e0e66cda0e55827cd03eea6bc5f8",
"id": "CVE-2022-49144-8a551558",
"signature_version": "v1",
"target": {
"file": "fs/io_uring.c"
},
"signature_type": "Line",
"digest": {
"line_hashes": [
"221255045690552853345404380195809525010",
"21936254845235850788254163497743696891",
"114611846118937103879099348436125247957",
"87395115947601187895730132488508076571"
],
"threshold": 0.9
}
},
{
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b27de7011cb3ba14b047be2cee0ed8278368665b",
"id": "CVE-2022-49144-8eab4acb",
"signature_version": "v1",
"target": {
"file": "fs/io_uring.c"
},
"signature_type": "Line",
"digest": {
"line_hashes": [
"221255045690552853345404380195809525010",
"21936254845235850788254163497743696891",
"114611846118937103879099348436125247957",
"87395115947601187895730132488508076571"
],
"threshold": 0.9
}
},
{
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@d6d7a517e81accf6ed22d55684baea763d2dbe43",
"id": "CVE-2022-49144-a3a06743",
"signature_version": "v1",
"target": {
"file": "fs/io_uring.c"
},
"signature_type": "Line",
"digest": {
"line_hashes": [
"221255045690552853345404380195809525010",
"21936254845235850788254163497743696891",
"114611846118937103879099348436125247957",
"87395115947601187895730132488508076571"
],
"threshold": 0.9
}
},
{
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@c86d18f4aa93e0e66cda0e55827cd03eea6bc5f8",
"id": "CVE-2022-49144-e641fb39",
"signature_version": "v1",
"target": {
"function": "__io_sqe_files_scm",
"file": "fs/io_uring.c"
},
"signature_type": "Function",
"digest": {
"function_hash": "287852008562986179182300999679098520331",
"length": 976.0
}
}
]