In the Linux kernel, the following vulnerability has been resolved: io_uring/zcrx: fix post open error handling Closing a queue doesn't guarantee that all associated page pools are terminated right away, let the refcounting do the work instead of releasing the zcrx ctx directly.
https://git.kernel.org/stable/c/5d540e4508950c674d6feef1d95463d039bbf4f5
https://git.kernel.org/stable/c/18afaff077b46655a8eb6fd7f6de1b81327be577