CVE Vulnerabilities

CVE-2021-3923

Published: Mar 27, 2023 | Modified: Nov 07, 2023
CVSS 3.x
2.3
LOW
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A flaw was found in the Linux kernels implementation of RDMA over infiniband. An attacker with a privileged local account can leak kernel stack information when issuing commands to the /dev/infiniband/rdma_cm device node. While this access is unlikely to leak sensitive user information, it can be further used to defeat existing kernel protection mechanisms.

Affected Software

Name Vendor Start Version End Version
Linux_kernel Linux * 5.15.14 (excluding)
Enterprise_linux Redhat 6.0 (including) 6.0 (including)
Enterprise_linux Redhat 7.0 (including) 7.0 (including)
Enterprise_linux Redhat 8.0 (including) 8.0 (including)

References