In the Linux kernel, the following vulnerability has been resolved:
NFSv4/pnfs: Fix a use-after-free bug in open
If someone cancels the open RPC call, then we must not try to free either the open slot or the layoutget operation arguments, since they are likely still in use by the hung RPC call.
{
"cna_assigner": "Linux",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50072.json"
}[
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"104919525987599543665442706396868515432",
"163778307214894242369224075964081965107",
"291762707907517685086386695580515725098",
"32891680304618812778548698116533779626",
"267062212969093464110370227039045839723",
"193401225712791901445800252419885915904",
"232985662007113371261639589292237034559",
"53761206396849961758828178603080901497",
"102602526855891920726983106228939490996"
]
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line",
"id": "CVE-2022-50072-2b1b9506",
"target": {
"file": "fs/nfs/nfs4proc.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b03d1117e9be7c7da60e466eaf9beed85c5916c8"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"104919525987599543665442706396868515432",
"163778307214894242369224075964081965107",
"291762707907517685086386695580515725098",
"32891680304618812778548698116533779626",
"267062212969093464110370227039045839723",
"193401225712791901445800252419885915904",
"232985662007113371261639589292237034559",
"53761206396849961758828178603080901497",
"102602526855891920726983106228939490996"
]
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line",
"id": "CVE-2022-50072-6c94a0f2",
"target": {
"file": "fs/nfs/nfs4proc.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f7ee3b772d9de87387a725caa04bc041ac7fe5ec"
},
{
"signature_version": "v1",
"digest": {
"length": 1900.0,
"function_hash": "204687597431379907358581364989082629324"
},
"deprecated": false,
"signature_type": "Function",
"id": "CVE-2022-50072-7fc7fa5a",
"target": {
"function": "_nfs4_open_and_get_state",
"file": "fs/nfs/nfs4proc.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b03d1117e9be7c7da60e466eaf9beed85c5916c8"
},
{
"signature_version": "v1",
"digest": {
"length": 1752.0,
"function_hash": "59956059044741049704138989944102515322"
},
"deprecated": false,
"signature_type": "Function",
"id": "CVE-2022-50072-ea2a3e68",
"target": {
"function": "_nfs4_open_and_get_state",
"file": "fs/nfs/nfs4proc.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f7ee3b772d9de87387a725caa04bc041ac7fe5ec"
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50072.json"