[SRU H/I/OEM-5.10 0/1] CVE-2021-41073

Thadeu Lima de Souza Cascardo cascardo at canonical.com
Mon Sep 20 13:33:41 UTC 2021


[Impact]
A vulnerability on io_uring was found and it might lead to local
privilege escalation.

[Test case]
A small test case that leads to a crashed kernel was tested and the fixed
versions did not crash after many runs on a loop.

5.11 and 5.13 were tested.

[Potential regressions]
Programs that use io_uring might fail to read or write some files.

Jens Axboe (1):
  io_uring: ensure symmetry in handling iter types in loop_rw_iter()

 fs/io_uring.c | 9 ++++++---
 1 file changed, 6 insertions(+), 3 deletions(-)

-- 
2.30.2




More information about the kernel-team mailing list