GPU VulnDB

Database/Firmware, BMC & network fabric

Intel RDMA driver for Ethernet X722 and 800 series (Linux): Improper input validation in the Intel RDMA Linux driver

CVSS 7.8CVE-2021-0084Firmware, BMC & network fabriccurated

Impact

Improper input validation in the Intel RDMA Linux driver gives an authenticated user privilege escalation. Earlier member of the same family as the irdma access-control issue and the same reason to care: RDMA queue pairs are mapped into userspace by design.

Who can reach it

Authenticated local user with access to the RDMA verbs interface.

What to do

Update the Intel RDMA driver to 1.3.19 or later. Module reload drops RDMA links - drain first.

References

Related entries

All Firmware, BMC & network fabric entries

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.