544
VMScore

CVE-2020-28974

Published: 20/11/2020 Updated: 27/01/2021
CVSS v2 Base Score: 6.1 | Impact Score: 8.5 | Exploitability Score: 3.9
CVSS v3 Base Score: 5 | Impact Score: 4.7 | Exploitability Score: 0.3
VMScore: 544
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:C

Vulnerability Summary

A slab-out-of-bounds read in fbcon in the Linux kernel prior to 5.9.7 could be used by local malicious users to read privileged information or potentially crash the kernel, aka CID-3c4e0dff2095. This occurs because KD_FONT_OP_COPY in drivers/tty/vt/vt.c can be used for manipulations such as font height.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

debian debian linux 9.0

Vendor Advisories

A use-after-free flaw was found in the debugfs_remove function in the Linux kernel The flaw could allow a local attacker with special user (or root) privilege to crash the system at the time of file or directory removal This vulnerability can lead to a kernel information leak The highest threat from this vulnerability is to system availability ...
A flaw was found in the Linux kernel A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly escalate privileges The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability (CVE-2020-14351) ...
A use-after-free flaw was found in the debugfs_remove function in the Linux kernel The flaw could allow a local attacker with special user (or root) privilege to crash the system at the time of file or directory removal This vulnerability can lead to a kernel information leak The highest threat from this vulnerability is to system availability ...
A slab-out-of-bounds read in fbcon in the Linux kernel before 597 could be used by local attackers to read privileged information or potentially crash the kernel, aka CID-3c4e0dff2095 This occurs because KD_FONT_OP_COPY in drivers/tty/vt/vtc can be used for manipulations such as font height ...

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> oss-sec mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> Re: Linux kernel slab-out-of-bounds Read in fbcon <!--X-Subject-Header-End--> <!--X-Head-of-Message--> From: "Srivatsa S Bh ...