A bug that allows linux kernel lockdown to be trivially bypassed using IMA.
In the Unbreakable Enterprise Kernel (UEK), the RDS module in UEK has two setsockopt(2) options, RDSCONNRESET and RDS6CONNRESET, that are not re-entrant. A malicious local user with CAPNETADMIN can use this to crash the kernel. CVSS 3.1 Base Score 5.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
A race condidition in systemd-coredump allows a local attacker to crash a SUID program and gain read access to the resulting core dump
End of life: 6/30/2032, Latest version: 9.8
End of life: 6/30/2032, Latest version: 9.8