ΠΠΎΠ»ΠΈΡΠ΅ΡΡΠ²ΠΎ 7
ΠΠΎΠ»ΠΈΡΠ΅ΡΡΠ²ΠΎ 7
BDU:2024-07452
Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡΡ ΠΊΠΎΠΌΠΏΠΎΠ½Π΅Π½ΡΠ° io_uring ΡΠ΄ΡΠ° ΠΎΠΏΠ΅ΡΠ°ΡΠΈΠΎΠ½Π½ΠΎΠΉ ΡΠΈΡΡΠ΅ΠΌΡ Linux, ΡΠ²ΡΠ·Π°Π½Π½Π°Ρ Ρ Π½Π΅ΠΏΡΠ°Π²ΠΈΠ»ΡΠ½ΠΎΠΉ Π±Π»ΠΎΠΊΠΈΡΠΎΠ²ΠΊΠΎΠΉ, ΠΏΠΎΠ·Π²ΠΎΠ»ΡΡΡΠ°Ρ Π½Π°ΡΡΡΠΈΡΠ΅Π»Ρ Π²ΡΠ·Π²Π°ΡΡ ΠΎΡΠΊΠ°Π· Π² ΠΎΠ±ΡΠ»ΡΠΆΠΈΠ²Π°Π½ΠΈΠΈ
CVE-2023-52903
In the Linux kernel, the following vulnerability has been resolved: io_uring: lock overflowing for IOPOLL syzbot reports an issue with overflow filling for IOPOLL: WARNING: CPU: 0 PID: 28 at io_uring/io_uring.c:734 io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 CPU: 0 PID: 28 Comm: kworker/u4:1 Not tainted 6.2.0-rc3-syzkaller-16369-g358a161a6a9e #0 Workqueue: events_unbound io_ring_exit_work Call trace: io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 io_req_cqe_overflow+0x5c/0x70 io_uring/io_uring.c:773 io_fill_cqe_req io_uring/io_uring.h:168 [inline] io_do_iopoll+0x474/0x62c io_uring/rw.c:1065 io_iopoll_try_reap_events+0x6c/0x108 io_uring/io_uring.c:1513 io_uring_try_cancel_requests+0x13c/0x258 io_uring/io_uring.c:3056 io_ring_exit_work+0xec/0x390 io_uring/io_uring.c:2869 process_one_work+0x2d8/0x504 kernel/workqueue.c:2289 worker_thread+0x340/0x610 kernel/workqueue.c:2436 kthread+0x12c/0x158 kernel/kthread.c:376 ret_from_fork+0x10/0x20 arch/arm64/kernel/...
CVE-2023-52903
In the Linux kernel, the following vulnerability has been resolved: io_uring: lock overflowing for IOPOLL syzbot reports an issue with overflow filling for IOPOLL: WARNING: CPU: 0 PID: 28 at io_uring/io_uring.c:734 io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 CPU: 0 PID: 28 Comm: kworker/u4:1 Not tainted 6.2.0-rc3-syzkaller-16369-g358a161a6a9e #0 Workqueue: events_unbound io_ring_exit_work Call trace: Β io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 Β io_req_cqe_overflow+0x5c/0x70 io_uring/io_uring.c:773 Β io_fill_cqe_req io_uring/io_uring.h:168 [inline] Β io_do_iopoll+0x474/0x62c io_uring/rw.c:1065 Β io_iopoll_try_reap_events+0x6c/0x108 io_uring/io_uring.c:1513 Β io_uring_try_cancel_requests+0x13c/0x258 io_uring/io_uring.c:3056 Β io_ring_exit_work+0xec/0x390 io_uring/io_uring.c:2869 Β process_one_work+0x2d8/0x504 kernel/workqueue.c:2289 Β worker_thread+0x340/0x610 kernel/workqueue.c:2436 Β kthread+0x12c/0x158 kernel/kthread.c:376 Β ret_from_fork+0x10/0...
CVE-2023-52903
In the Linux kernel, the following vulnerability has been resolved: io_uring: lock overflowing for IOPOLL syzbot reports an issue with overflow filling for IOPOLL: WARNING: CPU: 0 PID: 28 at io_uring/io_uring.c:734 io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 CPU: 0 PID: 28 Comm: kworker/u4:1 Not tainted 6.2.0-rc3-syzkaller-16369-g358a161a6a9e #0 Workqueue: events_unbound io_ring_exit_work Call trace: Β io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 Β io_req_cqe_overflow+0x5c/0x70 io_uring/io_uring.c:773 Β io_fill_cqe_req io_uring/io_uring.h:168 [inline] Β io_do_iopoll+0x474/0x62c io_uring/rw.c:1065 Β io_iopoll_try_reap_events+0x6c/0x108 io_uring/io_uring.c:1513 Β io_uring_try_cancel_requests+0x13c/0x258 io_uring/io_uring.c:3056 Β io_ring_exit_work+0xec/0x390 io_uring/io_uring.c:2869 Β process_one_work+0x2d8/0x504 kernel/workqueue.c:2289 Β worker_thread+0x340/0x610 kernel/workqueue.c:2436 Β kthread+0x12c/0x158 kernel/kthread.c:376 Β ret_from_fork+0x10/0
CVE-2023-52903
In the Linux kernel, the following vulnerability has been resolved: i ...
GHSA-2wjg-qcgr-7p52
In the Linux kernel, the following vulnerability has been resolved: io_uring: lock overflowing for IOPOLL syzbot reports an issue with overflow filling for IOPOLL: WARNING: CPU: 0 PID: 28 at io_uring/io_uring.c:734 io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 CPU: 0 PID: 28 Comm: kworker/u4:1 Not tainted 6.2.0-rc3-syzkaller-16369-g358a161a6a9e #0 Workqueue: events_unbound io_ring_exit_work Call trace: Β io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 Β io_req_cqe_overflow+0x5c/0x70 io_uring/io_uring.c:773 Β io_fill_cqe_req io_uring/io_uring.h:168 [inline] Β io_do_iopoll+0x474/0x62c io_uring/rw.c:1065 Β io_iopoll_try_reap_events+0x6c/0x108 io_uring/io_uring.c:1513 Β io_uring_try_cancel_requests+0x13c/0x258 io_uring/io_uring.c:3056 Β io_ring_exit_work+0xec/0x390 io_uring/io_uring.c:2869 Β process_one_work+0x2d8/0x504 kernel/workqueue.c:2289 Β worker_thread+0x340/0x610 kernel/workqueue.c:2436 Β kthread+0x12c/0x158 kernel/kthread.c:376 Β ret_from_fork+0x1...
ROS-20240919-02
ΠΠ½ΠΎΠΆΠ΅ΡΡΠ²Π΅Π½Π½ΡΠ΅ ΡΡΠ·Π²ΠΈΠΌΠΎΡΡΠΈ kernel-lt
Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡΠ΅ΠΉ Π½Π° ΡΡΡΠ°Π½ΠΈΡΡ
Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡΡ | CVSS | EPSS | ΠΠΏΡΠ±Π»ΠΈΠΊΠΎΠ²Π°Π½ΠΎ | |
|---|---|---|---|---|
BDU:2024-07452 Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡΡ ΠΊΠΎΠΌΠΏΠΎΠ½Π΅Π½ΡΠ° io_uring ΡΠ΄ΡΠ° ΠΎΠΏΠ΅ΡΠ°ΡΠΈΠΎΠ½Π½ΠΎΠΉ ΡΠΈΡΡΠ΅ΠΌΡ Linux, ΡΠ²ΡΠ·Π°Π½Π½Π°Ρ Ρ Π½Π΅ΠΏΡΠ°Π²ΠΈΠ»ΡΠ½ΠΎΠΉ Π±Π»ΠΎΠΊΠΈΡΠΎΠ²ΠΊΠΎΠΉ, ΠΏΠΎΠ·Π²ΠΎΠ»ΡΡΡΠ°Ρ Π½Π°ΡΡΡΠΈΡΠ΅Π»Ρ Π²ΡΠ·Π²Π°ΡΡ ΠΎΡΠΊΠ°Π· Π² ΠΎΠ±ΡΠ»ΡΠΆΠΈΠ²Π°Π½ΠΈΠΈ | CVSS3: 5.5 | 0% ΠΠΈΠ·ΠΊΠΈΠΉ | Π±ΠΎΠ»ΡΡΠ΅ 3 Π»Π΅Ρ Π½Π°Π·Π°Π΄ | |
CVE-2023-52903 In the Linux kernel, the following vulnerability has been resolved: io_uring: lock overflowing for IOPOLL syzbot reports an issue with overflow filling for IOPOLL: WARNING: CPU: 0 PID: 28 at io_uring/io_uring.c:734 io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 CPU: 0 PID: 28 Comm: kworker/u4:1 Not tainted 6.2.0-rc3-syzkaller-16369-g358a161a6a9e #0 Workqueue: events_unbound io_ring_exit_work Call trace: io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 io_req_cqe_overflow+0x5c/0x70 io_uring/io_uring.c:773 io_fill_cqe_req io_uring/io_uring.h:168 [inline] io_do_iopoll+0x474/0x62c io_uring/rw.c:1065 io_iopoll_try_reap_events+0x6c/0x108 io_uring/io_uring.c:1513 io_uring_try_cancel_requests+0x13c/0x258 io_uring/io_uring.c:3056 io_ring_exit_work+0xec/0x390 io_uring/io_uring.c:2869 process_one_work+0x2d8/0x504 kernel/workqueue.c:2289 worker_thread+0x340/0x610 kernel/workqueue.c:2436 kthread+0x12c/0x158 kernel/kthread.c:376 ret_from_fork+0x10/0x20 arch/arm64/kernel/... | CVSS3: 5.5 | 0% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΏΠΎΡΡΠΈ 2 Π³ΠΎΠ΄Π° Π½Π°Π·Π°Π΄ | |
CVE-2023-52903 In the Linux kernel, the following vulnerability has been resolved: io_uring: lock overflowing for IOPOLL syzbot reports an issue with overflow filling for IOPOLL: WARNING: CPU: 0 PID: 28 at io_uring/io_uring.c:734 io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 CPU: 0 PID: 28 Comm: kworker/u4:1 Not tainted 6.2.0-rc3-syzkaller-16369-g358a161a6a9e #0 Workqueue: events_unbound io_ring_exit_work Call trace: Β io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 Β io_req_cqe_overflow+0x5c/0x70 io_uring/io_uring.c:773 Β io_fill_cqe_req io_uring/io_uring.h:168 [inline] Β io_do_iopoll+0x474/0x62c io_uring/rw.c:1065 Β io_iopoll_try_reap_events+0x6c/0x108 io_uring/io_uring.c:1513 Β io_uring_try_cancel_requests+0x13c/0x258 io_uring/io_uring.c:3056 Β io_ring_exit_work+0xec/0x390 io_uring/io_uring.c:2869 Β process_one_work+0x2d8/0x504 kernel/workqueue.c:2289 Β worker_thread+0x340/0x610 kernel/workqueue.c:2436 Β kthread+0x12c/0x158 kernel/kthread.c:376 Β ret_from_fork+0x10/0... | CVSS3: 5.3 | 0% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΏΠΎΡΡΠΈ 2 Π³ΠΎΠ΄Π° Π½Π°Π·Π°Π΄ | |
CVE-2023-52903 In the Linux kernel, the following vulnerability has been resolved: io_uring: lock overflowing for IOPOLL syzbot reports an issue with overflow filling for IOPOLL: WARNING: CPU: 0 PID: 28 at io_uring/io_uring.c:734 io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 CPU: 0 PID: 28 Comm: kworker/u4:1 Not tainted 6.2.0-rc3-syzkaller-16369-g358a161a6a9e #0 Workqueue: events_unbound io_ring_exit_work Call trace: Β io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 Β io_req_cqe_overflow+0x5c/0x70 io_uring/io_uring.c:773 Β io_fill_cqe_req io_uring/io_uring.h:168 [inline] Β io_do_iopoll+0x474/0x62c io_uring/rw.c:1065 Β io_iopoll_try_reap_events+0x6c/0x108 io_uring/io_uring.c:1513 Β io_uring_try_cancel_requests+0x13c/0x258 io_uring/io_uring.c:3056 Β io_ring_exit_work+0xec/0x390 io_uring/io_uring.c:2869 Β process_one_work+0x2d8/0x504 kernel/workqueue.c:2289 Β worker_thread+0x340/0x610 kernel/workqueue.c:2436 Β kthread+0x12c/0x158 kernel/kthread.c:376 Β ret_from_fork+0x10/0 | CVSS3: 5.5 | 0% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΏΠΎΡΡΠΈ 2 Π³ΠΎΠ΄Π° Π½Π°Π·Π°Π΄ | |
CVE-2023-52903 In the Linux kernel, the following vulnerability has been resolved: i ... | CVSS3: 5.5 | 0% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΏΠΎΡΡΠΈ 2 Π³ΠΎΠ΄Π° Π½Π°Π·Π°Π΄ | |
GHSA-2wjg-qcgr-7p52 In the Linux kernel, the following vulnerability has been resolved: io_uring: lock overflowing for IOPOLL syzbot reports an issue with overflow filling for IOPOLL: WARNING: CPU: 0 PID: 28 at io_uring/io_uring.c:734 io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 CPU: 0 PID: 28 Comm: kworker/u4:1 Not tainted 6.2.0-rc3-syzkaller-16369-g358a161a6a9e #0 Workqueue: events_unbound io_ring_exit_work Call trace: Β io_cqring_event_overflow+0x1c0/0x230 io_uring/io_uring.c:734 Β io_req_cqe_overflow+0x5c/0x70 io_uring/io_uring.c:773 Β io_fill_cqe_req io_uring/io_uring.h:168 [inline] Β io_do_iopoll+0x474/0x62c io_uring/rw.c:1065 Β io_iopoll_try_reap_events+0x6c/0x108 io_uring/io_uring.c:1513 Β io_uring_try_cancel_requests+0x13c/0x258 io_uring/io_uring.c:3056 Β io_ring_exit_work+0xec/0x390 io_uring/io_uring.c:2869 Β process_one_work+0x2d8/0x504 kernel/workqueue.c:2289 Β worker_thread+0x340/0x610 kernel/workqueue.c:2436 Β kthread+0x12c/0x158 kernel/kthread.c:376 Β ret_from_fork+0x1... | CVSS3: 5.5 | 0% ΠΠΈΠ·ΠΊΠΈΠΉ | ΠΏΠΎΡΡΠΈ 2 Π³ΠΎΠ΄Π° Π½Π°Π·Π°Π΄ | |
ROS-20240919-02 ΠΠ½ΠΎΠΆΠ΅ΡΡΠ²Π΅Π½Π½ΡΠ΅ ΡΡΠ·Π²ΠΈΠΌΠΎΡΡΠΈ kernel-lt | CVSS3: 7.8 | ΠΏΠΎΡΡΠΈ 2 Π³ΠΎΠ΄Π° Π½Π°Π·Π°Π΄ |
Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡΠ΅ΠΉ Π½Π° ΡΡΡΠ°Π½ΠΈΡΡ