CVE-2020-27835: Linux Infiniband HFI1 Driver

Medium severity, CVSS 4.4. EPSS: 0.3% chance of exploitation in the next 30 days.

A use after free in the Linux kernel infiniband hfi1 driver in versions prior to 5.10-rc6 was found in the way user calls Ioctl after open dev file and fork. A local user could use this flaw to crash the system.

Affected products

  • Linux Infiniband HFI1 Driver: up to and including 5.9; version 5.10 only

Published 2021-01-07. Last modified 2026-06-17.