CVE-2023-2176: Linux Kernel

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

A vulnerability was found in compare_netdev_and_ip in drivers/infiniband/core/cma.c in RDMA in the Linux Kernel. The improper cleanup results in out-of-boundary read, where a local user can utilize this problem to crash the system or escalation of privilege.

Affected products

  • Linux Linux Kernel: from 6.0, before 6.1.81 (fixed in 6.1.81); from 6.2, before 6.3 (fixed in 6.3)

Published 2023-04-20. Last modified 2026-06-17.