Security Advisory

CVE-2021-4023

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-03-09 16:49:04
Last updated 2024-08-03 17:16:03
Assigner redhat
State PUBLISHED

Description

A flaw was found in the io-workqueue implementation in the Linux kernel versions prior to 5.15-rc1. The kernel can panic when an improper cancellation operation triggers the submission of new io-uring operations during a shortage of free space. This flaw allows a local user with permissions to execute io-uring requests to possibly crash the system.