Use after free in Linux kernel - CVE-2022-1976
Published: August 31, 2022 / Updated: February 14, 2023
Linux kernel
Linux Foundation
Description
The vulnerability allows a local user to execute arbitrary code.
A flaw was found in the Linux kernel's implementation of IO-URING. This flaw allows an attacker with local executable permission to create a string of requests that can cause a use-after-free flaw within the kernel. This issue leads to memory corruption and possible privilege escalation.