Security Advisory
CVE-2022-49852
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
In the Linux kernel, the following vulnerability has been resolved: riscv: process: fix kernel info leakage thread_structs s[12] may contain random kernel memory content, which may be finally leaked to userspace. This is a security hole. Fix it by clearing the s[12] array in thread_struct when fork. As for kthread case, its better to clear the s[12] array as well.