{"id":"DEBIAN-CVE-2024-41001","details":"In the Linux kernel, the following vulnerability has been resolved:  io_uring/sqpoll: work around a potential audit memory leak  kmemleak complains that there's a memory leak related to connect handling:  unreferenced object 0xffff0001093bdf00 (size 128): comm \"iou-sqp-455\", pid 457, jiffies 4294894164 hex dump (first 32 bytes): 02 00 fa ea 7f 00 00 01 00 00 00 00 00 00 00 00  ................ 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................ backtrace (crc 2e481b1a): [\u003c00000000c0a26af4\u003e] kmemleak_alloc+0x30/0x38 [\u003c000000009c30bb45\u003e] kmalloc_trace+0x228/0x358 [\u003c000000009da9d39f\u003e] __audit_sockaddr+0xd0/0x138 [\u003c0000000089a93e34\u003e] move_addr_to_kernel+0x1a0/0x1f8 [\u003c000000000b4e80e6\u003e] io_connect_prep+0x1ec/0x2d4 [\u003c00000000abfbcd99\u003e] io_submit_sqes+0x588/0x1e48 [\u003c00000000e7c25e07\u003e] io_sq_thread+0x8a4/0x10e4 [\u003c00000000d999b491\u003e] ret_from_fork+0x10/0x20  which can can happen if:  1) The command type does something on the prep side that triggers an    audit call. 2) The thread hasn't done any operations before this that triggered    an audit call inside -\u003eissue(), where we have audit_uring_entry()    and audit_uring_exit().  Work around this by issuing a blanket NOP operation before the SQPOLL does anything.","modified":"2026-09-15T09:03:09.742294026Z","published":"2024-07-12T13:15:21.053Z","upstream":["CVE-2024-41001"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2024-41001"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:12","purl":"pkg:deb/debian/linux?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.99-1"}]}],"versions":["6.1.27-1","6.1.37-1","6.1.38-1","6.1.38-2","6.1.38-2~bpo11+1","6.1.38-3","6.1.38-4","6.1.38-4~bpo11+1","6.1.52-1","6.1.55-1","6.1.55-1~bpo11+1","6.1.64-1","6.1.66-1","6.1.67-1","6.1.69-1","6.1.69-1~bpo11+1","6.1.76-1","6.1.76-1~bpo11+1","6.1.82-1","6.1.85-1","6.1.90-1","6.1.90-1~bpo11+1","6.1.94-1","6.1.94-1~bpo11+1","6.1.98-1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2024-41001.json"}},{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.9.7-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2024-41001.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.9.7-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2024-41001.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"}]}