A flaw in the Linux kernel's implementation of RDMA communications manager listener code allowed an attacker with local access to setup a socket to listen on a high port allowing for a list element to be used after free. Given the ability to execute code, a local attacker could leverage this use-after-free to crash the system or possibly escalate privileges on the system.
2022-08-24T16:15:09.197
2024-11-21T06:36:45.057
Modified
CVSSv3.1: 7.8 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | linux | linux_kernel | < 5.10.71 | Yes |
| Operating System | linux | linux_kernel | < 5.14.10 | Yes |
| Operating System | suse | linux_enterprise | 15.0 | Yes |
| Operating System | suse | linux_enterprise | 15.0 | Yes |