I
n the Linux kernel, the following vulnerability has been resolved: io_uring: fix multishot accept request leaks Having REQ_F_POLLED set doesn't guarantee that the request is executed as a multishot from the polling path. Fortunately for us, if the code thinks it's multishot issue when it's not, it can only ask to skip completion so leaking the request. Use issue_flags to mark multipoll issues.
References
Configurations
Configuration 1 (hide)
|
History
05 Nov 2025, 15:19
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:linux:linux_kernel:6.1:rc3:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.1:rc2:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.1:rc5:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.1:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.1:rc4:*:*:*:*:*:* |
|
| References | () https://git.kernel.org/stable/c/0e4626de856ef8f25ecd9c716e76d4f95ce95639 - Patch | |
| References | () https://git.kernel.org/stable/c/91482864768a874c4290ef93b84a78f4f1dac51b - Patch | |
| CWE | CWE-401 | |
| Summary |
|
|
| First Time |
Linux linux Kernel
Linux |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
01 May 2025, 15:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-05-01 15:16
Updated : 2025-11-05 15:19
NVD link : CVE-2022-49791
Mitre link : CVE-2022-49791
CVE.ORG link : CVE-2022-49791
JSON object : View
Products Affected
CWE
CWE-401
Missing Release of Memory after Effective Lifetime