APPLIED [OEM-5.14] Re: [SRU H/I/OEM-5.10 0/1] CVE-2021-41073

Timo Aaltonen tjaalton at ubuntu.com
Tue Sep 21 08:59:58 UTC 2021


On 20.9.2021 16.33, Thadeu Lima de Souza Cascardo wrote:
> [Impact]
> A vulnerability on io_uring was found and it might lead to local
> privilege escalation.
> 
> [Test case]
> A small test case that leads to a crashed kernel was tested and the fixed
> versions did not crash after many runs on a loop.
> 
> 5.11 and 5.13 were tested.
> 
> [Potential regressions]
> Programs that use io_uring might fail to read or write some files.
> 
> Jens Axboe (1):
>    io_uring: ensure symmetry in handling iter types in loop_rw_iter()
> 
>   fs/io_uring.c | 9 ++++++---
>   1 file changed, 6 insertions(+), 3 deletions(-)
> 

and this applied to oem-5.14 fine, too

-- 
t



More information about the kernel-team mailing list