An integer overflow flaw was found in the Linux kernel. This issue leads to the kernel allocating `skb_shared_info` in the userspace, which is exploitable in systems without SMAP protection since `skb_shared_info` contains references to function pointers.
| Version | Score | Severity | Vector String |
|---|---|---|---|
| 3.1 | 5.5 | Medium | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
| Product | Vendor | Version |
|---|---|---|
| Fedora | Fedora | See references |
| Red Hat Enterprise Linux 6 | Red Hat | <= 4.19.* |
| Red Hat Enterprise Linux 7 | Red Hat | n/a |
| Red Hat Enterprise Linux 8 | Red Hat | 6.2.1 |
| Red Hat Enterprise Linux 9 | Red Hat | 6.2.25 |
| Red Hat Enterprise Linux 8 | Red Hat | 6.2.3 |
| Red Hat Enterprise Linux 7 | Red Hat | n/a |
| Red Hat Enterprise Linux 9 | Red Hat | < 25.04.2 |
| Kernel | n/a | 6.1.12 |