NVIDIA Linux distributions contain a vulnerability in nvmap ioctl, which allows any user with a local account to exploit a use-after-free condition, leading to code privilege escalation, loss of confidentiality and integrity, or denial of service. References: https://nvidia.custhelp.com/app/answers/detail/a_id/5259
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 2044525]
This is in a vulnerability in code that nvidia has not put upstream.
Hosted OpenShift/Managed Services notaffected.
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2021-34403