In rcu_cblist_dequeue of rcu_segcblist.c, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the kernel with System execution privileges needed. User interaction is not needed for exploitation. References: https://github.com/torvalds/linux/commit/f70865db5ff35f5ed0c7e9ef63e7cca3d4947f04 https://bugzilla.suse.com/show_bug.cgi?id=1200609
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 2150846]
This was fixed for Fedora with the 5.13 stable kernel rebases