A flaw in the Linux kernel's implementation of RDMA communications manager listener code allowed an attacker with local access to setup a socket to listen on a high port allowing for a list element to be used after free. Given the ability to execute code, a local attacker could leverage this use-after-free to crash the system or possibly escalate privileges on the system.
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | — | Upgrade kernel-tools-libs-devel | May 4, 2022 | Apr 26, 2022 |
| Arch Linux | — | Upgrade to the latest version of Arch Linux | Jul 11, 2025 | Aug 24, 2022 |
| Centos_linux | — | Upgrade kpatch-patch-4_18_0-348_12_2-debuginfoUpgrade kpatch-patch-4_18_0-348_2_1-debuginfoUpgrade kernel-rtUpgrade kpatch-patch-3_10_0-1160_45_1Upgrade kpatch-patch-3_10_0-1160_49_1Upgrade kpatch-patch-4_18_0-348_2_1-debugsourceUpgrade kpatch-patch-3_10_0-1160_41_1-debuginfoUpgrade kpatch-patch-4_18_0-348_20_1-debugsourceUpgrade kpatch-patch-3_10_0-1160_36_2-debuginfoUpgrade kpatch-patch-3_10_0-1160_41_1Upgrade kpatch-patch-4_18_0-348_7_1-debugsourceUpgrade kpatch-patch-3_10_0-1160_45_1-debuginfoUpgrade kpatch-patch-4_18_0-348_7_1-debuginfoUpgrade kpatch-patch-3_10_0-1160_42_2-debuginfoUpgrade kpatch-patch-4_18_0-348_20_1Upgrade kpatch-patch-4_18_0-348_12_2Upgrade kpatch-patch-3_10_0-1160_31_1Upgrade kpatch-patch-4_18_0-348-debugsourceUpgrade kpatch-patch-3_10_0-1160_59_1Upgrade kpatch-patch-4_18_0-348_12_2-debugsourceUpgrade kpatch-patch-3_10_0-1160_49_1-debuginfoUpgrade kernelUpgrade kpatch-patch-3_10_0-1160_59_1-debuginfoUpgrade kpatch-patch-3_10_0-1160_25_1-debuginfoUpgrade kpatch-patch-3_10_0-1160_24_1Upgrade kpatch-patch-3_10_0-1160_53_1Upgrade kpatch-patch-4_18_0-348_7_1Upgrade kpatch-patch-3_10_0-1160_25_1Upgrade kpatch-patch-4_18_0-348_2_1Upgrade kpatch-patch-4_18_0-348Upgrade kpatch-patch-3_10_0-1160_36_2Upgrade kpatch-patch-3_10_0-1160_24_1-debuginfoUpgrade kpatch-patch-3_10_0-1160_53_1-debuginfoUpgrade kpatch-patch-4_18_0-348_20_1-debuginfoUpgrade kpatch-patch-4_18_0-348-debuginfoUpgrade kpatch-patch-3_10_0-1160_42_2Upgrade kpatch-patch-3_10_0-1160_31_1-debuginfo | Apr 6, 2022 | Apr 5, 2022 |
| Debian | — | Upgrade linux | Jul 30, 2024 | Aug 24, 2022 |
| Oracle_linux | — | Upgrade kernel | Apr 6, 2022 | Oct 4, 2021 |
| Redhat_linux | — | Upgrade kernel-rtNo solution existsUpgrade kernel | Feb 23, 2022 | Feb 22, 2022 |
| Rocky_linux | — | Upgrade python3-perfUpgrade kernel-modules-extraUpgrade kernel-rt-debug-develUpgrade kernel-debug-develUpgrade kernel-debuginfoUpgrade kernel-tools-debuginfoUpgrade kernel-debugUpgrade kernelUpgrade kernel-debug-modulesUpgrade kernel-cross-headersUpgrade kernel-headersUpgrade kernel-modulesUpgrade kernel-coreUpgrade kernel-debuginfo-common-x86_64Upgrade kernel-rt-coreUpgrade kernel-rt-debug-modulesUpgrade kernel-rt-debug-modules-extraUpgrade kernel-debug-coreUpgrade perf-debuginfoUpgrade kernel-rt-debuginfo-common-x86_64Upgrade bpftool-debuginfoUpgrade kernel-tools-libsUpgrade kernel-rt-kvmUpgrade kernel-rt-debug-debuginfoUpgrade kernel-rt-debugUpgrade kernel-rt-modulesUpgrade kernel-develUpgrade bpftoolUpgrade kernel-debug-debuginfoUpgrade kernel-rt-debuginfoUpgrade kernel-toolsUpgrade kernel-rtUpgrade perfUpgrade kernel-rt-debug-coreUpgrade kernel-debug-modules-extraUpgrade kernel-rt-develUpgrade kernel-tools-libs-develUpgrade python3-perf-debuginfoUpgrade kernel-rt-modules-extra | Mar 5, 2024 | Aug 24, 2022 |
| Suse | — | Upgrade kernel-livepatch-5_3_18-59_24-defaultUpgrade kernel-livepatch-5_3_18-59_13-defaultUpgrade kernel-livepatch-5_3_18-59_16-defaultUpgrade kernel-livepatch-5_3_18-59_5-defaultUpgrade kernel-livepatch-5_3_18-57-defaultUpgrade kernel-livepatch-5_3_18-59_27-defaultUpgrade kernel-livepatch-5_3_18-59_10-defaultUpgrade kernel-livepatch-5_3_18-59_19-default | Feb 4, 2022 | Feb 1, 2022 |
| Ubuntu | — | Upgrade linux-riscvUpgrade linux-oracle-5.11Upgrade linuxUpgrade linux-hwe-5.13Upgrade linux-oem-5.13Upgrade linux-raspiUpgrade linux-gcpUpgrade linux-awsUpgrade linux-azureUpgrade linux-aws-5.11Upgrade linux-oem-5.14Upgrade linux-riscv-5.11Upgrade linux-oem-5.10Upgrade linux-gcp-5.11Upgrade linux-oracleUpgrade linux-azure-5.11Upgrade linux-kvm | Nov 19, 2024 | Aug 24, 2022 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub