Linux Kernel svcrdma Memory Copy Vulnerability via Incorrect Byte Offset Handling

Vulnerability

A vulnerability in the Linux kernel's svcrdma component has been addressed. The issue arose because the svc_rdma_copy_inline_range function used the page index rc_curpage for memory copies, instead of the correct byte offset rc_pageoff. This mistake could lead to copies being misaligned, potentially causing data corruption or other unintended effects. The vulnerability was discovered by ZeroPath.

Impact

The vulnerability could lead to memory corruption by allowing data to be copied to the wrong location in memory, disrupting the intended data flow and potentially causing application errors or crashes.

Added: Jan 13, 2026, 5:58 PM
Updated: Jan 13, 2026, 5:58 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
5.3
remediation
7.7
relevance
2.1
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.