RefCount Leak in Linux Kernel v9fs Protocol
CVE-2022-49704

Currently unrated

Key Information:

Vendor
Linux
Status
Vendor
CVE Published:
26 February 2025

Summary

The Linux kernel was found to contain a vulnerability in the v9fs protocol that resulted in a refcount leak. This issue occurred due to the protocol version check being performed after the file identifier (fid) had been obtained, leading to potential unintended behavior. By moving the version check to occur earlier in the process, this vulnerability has been effectively mitigated, enhancing the overall security of the kernel and its implementations utilizing the v9fs protocol.

Affected Version(s)

Linux 6636b6dcc3db2258cd0585b8078c1c225c4b6dde

Linux 6636b6dcc3db2258cd0585b8078c1c225c4b6dde

Linux 6636b6dcc3db2258cd0585b8078c1c225c4b6dde

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.