The block subsystem in the Linux kernel before 5.2 has a use-after-free that can lead to arbitrary code execution in the kernel context and privilege escalation, aka CID-c3e2219216c9. This is related to blk_mq_free_rqs and blk_cleanup_queue.
Software | From | Fixed in |
---|---|---|
linux / linux_kernel | 5.2-rc3 | 5.2-rc3.x |