In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix race during abort for file descriptors fput() doesn't actually call file_operations release() synchronously, it puts…
High CVSS 7.8
Summary
In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix race during abort for file descriptors fput() doesn't actually call file_operations release() synchronously, it puts the file on a work queue and it will be released eventually. This is normally fine, except for iommufd the file and the iommufd_object are tied to gether. The file has the object as it's private_data and holds a users refcount, while the object is expected to remain alive as long as the file is. …
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/17195a7d754a5c6a31888702ca93f6f08f3383ad Patch
- https://git.kernel.org/stable/c/4e034bf045b12852a24d5d33f2451850818ba0c1 Patch
- https://git.kernel.org/stable/c/e4825368285e33d6360c6c6a6a10d2d83da06e55 Patch
Timeline
- nvd_ingest NVD