CVE-2022-49144

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Feb 26, 2025
Updated: Mar 13, 2025
CWE ID 401

Summary

CVE-2022-44914: A vulnerability was identified in the Linux kernel's io_uring module. This issue resulted in a memory leak, specifically of the uid (user ID) during files registration. The problem occurred when there were no files for __io_sqe_files_scm() to process in the specified range. Although the module would free everything and return, it failed to put the uid back, leading to potential security risks. This issue has now been resolved.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share