An integer overflow flaw was found in the Linux kernel. This issue leads to the kernel allocating `skb_shared_info` in the userspace, which is exploitable in systems without SMAP protection since `skb_shared_info` contains references to function pointers.
| Version | Score | Severity | Vector String |
|---|---|---|---|
| 3.1 | 5.5 | Medium | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
| Product | Vendor | Version |
|---|---|---|
| Fedora | Fedora | < * |
| Red Hat Enterprise Linux 6 | Red Hat | various |
| Red Hat Enterprise Linux 7 | Red Hat | See references |
| Red Hat Enterprise Linux 8 | Red Hat | < 120.0.6099.224 |
| Red Hat Enterprise Linux 9 | Red Hat | < * |
| Red Hat Enterprise Linux 8 | Red Hat | 1.1.0210050 |
| Red Hat Enterprise Linux 7 | Red Hat | 1.1.0210050 |
| Red Hat Enterprise Linux 9 | Red Hat | < * |
| Kernel | n/a | 2024.1.0.23997 |