An integer overflow flaw was found in the Linux kernel. This issue leads to the kernel allocating `skb_shared_info` in the userspace, which is exploitable in systems without SMAP protection since `skb_shared_info` contains references to function pointers.
Version | Score | Severity | Vector String |
---|---|---|---|
3.1 | 5.5 | Medium | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Product | Vendor | Version |
---|---|---|
Fedora | Fedora | See references |
Red Hat Enterprise Linux 6 | Red Hat | <= 4.19.* |
Red Hat Enterprise Linux 7 | Red Hat | n/a |
Red Hat Enterprise Linux 8 | Red Hat | 6.2.1 |
Red Hat Enterprise Linux 9 | Red Hat | 6.2.25 |
Red Hat Enterprise Linux 8 | Red Hat | 6.2.3 |
Red Hat Enterprise Linux 7 | Red Hat | n/a |
Red Hat Enterprise Linux 9 | Red Hat | < 25.04.2 |
Kernel | n/a | 6.1.12 |