Database/Kernel, userspace & hypervisor
Linux kernel SMC (early link-group access on CLC decline in smc_clc_wait_msg): A peer can send a CLC decline before the
Impact
A peer can send a CLC decline before the connection has been attached to a link group, and the decline handler updates link-group-level state that does not exist yet. The remote side chooses the timing, so an unauthenticated peer declines early and dereferences the unset link group on the node it is talking to.
Who can reach it
Remote, unauthenticated, during SMC handshake - send a decline before link-group setup completes.
What to do
Kernel update guarding the link-group update on the link group existing. Keep SMC off tenant-reachable interfaces if it is not deliberately used.
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.