A flaw was found in the Linux kernel's implementation of RDMA over infiniband. An attacker with a privileged local account can leak kernel stack information when issuing commands to the /dev/infiniband/rdma_cm device node. While this access is unlikely to leak sensitive user information, it can be further used to defeat existing kernel protection mechanisms.
Version | Score | Severity | Vector String |
---|---|---|---|
3.1 | 2.3 | Low | CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N |
Product | Vendor | Version |
---|---|---|
kernel | n/a | < adb1f312f38f0d2c928ceaff089262798cc260b4 |