Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A user-after-free vulnerability has been addressed in the Linux kernel's io_uring zcrx component. This issue arises because the function io_free_rbuf_ring() uses a user_struct, which is released by io_zcrx_ifq_free() before the buffer ring is fully destroyed. As a result, this creates a potential use-after-free scenario that could be exploited.
Exploitation of this vulnerability could lead to a use-after-free condition, potentially allowing for arbitrary code execution or memory corruption.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.