In the Linux kernel, the following vulnerability has been resolved:
io_uring/rw: free potentially allocated iovec on cache put failure
If a read/write request goes through io_req_rw_cleanup() and has an
allocated iovec attached and fails to put to the rw_cache, then it may
end up with an unaccounted iovec pointer. Have io_rw_recycle() return
whether it recycled the request or not, and use that to gauge whether to
free a potential iovec or not.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-03-18 18:16
Updated : 2026-06-17 10:21
NVD link : CVE-2026-23259
Mitre link : CVE-2026-23259
CVE.ORG link : CVE-2026-23259
JSON object : View
Products Affected
linux
- linux_kernel
CWE
