A use-after-free flaw was found in vmxnet3_rq_alloc_rx_buf in drivers/net/vmxnet3/vmxnet3_drv.c in VMware's vmxnet3 ethernet NIC driver in the Linux Kernel. This issue could allow a local attacker to crash the system due to a double-free while cleaning up vmxnet3_rq_cleanup_all, which could also lead to a kernel information leak problem.
| Version | Score | Severity | Vector String |
|---|---|---|---|
| 3.1 | 7.1 | High | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H |
| Product | Vendor | Version |
|---|---|---|
| Red Hat Enterprise Linux 7 | Red Hat | < b63026b5e13040cd5afa11769dd0d9e1504b031a |
| Red Hat Enterprise Linux 7 | Red Hat | < ae16440c44ae2acda6d72aff9d74eccf8967dae5 |
| Red Hat Enterprise Linux 8 | Red Hat | < bf98be80cbe3b4e6c86c36ed00457389aca3eb15 |
| Red Hat Enterprise Linux 9 | Red Hat | < 259c0f68168ac6a598db3486597b10e74d625db0 |