basesockcreate in drivers/isdn/mISDN/socket.c in the AFISDN network module in the Linux kernel through 5.3.2 does not enforce CAPNET_RAW, which means that unprivileged users can create a raw socket, aka CID-b91ee4aa2a21.
{ "urgency": "not yet assigned" }