A use after free in the Linux kernel infiniband hfi1 driver in versions prior to 5.10-rc6 was found in the way user calls Ioctl after open dev file and fork. A local user could use this flaw to crash the system.
[
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "5.9"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "5.10-rc1"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "5.10-rc2"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "5.10-rc3"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "5.10-rc4"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "5.10-rc5"
}
]
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-27835.json"