nluedtke / linux_kernel_cves

Tracking CVEs for the linux Kernel
Apache License 2.0
739 stars 71 forks source link

[DATA] CVE-2022-1652 #271

Closed DerDakon closed 2 years ago

DerDakon commented 2 years ago

Change Type Requested Update

CVE id number CVE-2022-1652

References CVE assignment notice: https://www.openwall.com/lists/oss-security/2022/05/10/2

Additional context Author's short description

concurrency uaf between reset_interrupt and floppy_end_request

The dangerous ioctl has been made optional in https://github.com/torvalds/linux/commit/233087ca063686964a53c829d547c7571e3f67bf for 5.18

Backports:

DerDakon commented 2 years ago

Fixed with 46f29bfb35d36b6de1b59a0df2b2ad853fe86208.