CVE-2011-0695: Canonical Ubuntu Linux

Medium severity, CVSS 5.7. EPSS: 1.2% chance of exploitation in the next 30 days.

Race condition in the cm_work_handler function in the InfiniBand driver (drivers/infiniband/core/cma.c) in Linux kernel 2.6.x allows remote attackers to cause a denial of service (panic) by sending an InfiniBand request while other request handlers are still running, which triggers an invalid pointer dereference.

Affected products

  • Canonical Ubuntu Linux: version 8.04 only
  • Linux Linux Kernel: from 2.6.0, up to and including 2.6.39.4
  • Red Hat Enterprise Linux Desktop: version 5.0 only
  • Red Hat Enterprise Linux Eus: version 5.6 only
  • Red Hat Enterprise Linux Server: version 5.0 only
  • Red Hat Enterprise Linux Server Aus: version 5.6 only
  • Red Hat Enterprise Linux Workstation: version 5.0 only

Published 2011-03-15. Last modified 2026-06-16.