CVE-2022-49144

MEDIUM EPSS 15.3%
Published Feb 26, 20251y ago · Modified Jun 17, 20261w ago
5.5 CVSS 3.1
Medium
Find Similar
Published Feb 26, 2025 1y ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: io_uring: fix memory leak of uid in files registration When there are no files for __io_sqe_files_scm() to process in the range, it'll free everything and return. However, it forgets to put uid.

CVSS Details

Base Score
5.5
Exploitability
1.8
Impact
3.6
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
15.3% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-401

Affected Products 4

VendorProductVersionRange
linuxlinux_kernel*≥5.5  –  <5.10.110
linuxlinux_kernel*≥5.11  –  <5.15.33
linuxlinux_kernel*≥5.16  –  <5.16.19
linuxlinux_kernel*≥5.17  –  <5.17.2

References 5

  • git.kernel.org https://git.kernel.org/stable/c/0853bd6885c2f293d88aaa7f7f1702c959b31680
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7fa8b228c3f30060b9f4b24bb9aaaf41b0ae83fe
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b27de7011cb3ba14b047be2cee0ed8278368665b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c86d18f4aa93e0e66cda0e55827cd03eea6bc5f8
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/d6d7a517e81accf6ed22d55684baea763d2dbe43
    Patch

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/0853bd6885c2f293d88aaa7f7f1702c959b31680
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7fa8b228c3f30060b9f4b24bb9aaaf41b0ae83fe
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b27de7011cb3ba14b047be2cee0ed8278368665b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c86d18f4aa93e0e66cda0e55827cd03eea6bc5f8
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/d6d7a517e81accf6ed22d55684baea763d2dbe43
    Patch