5.6

CVE-2020-14390

A flaw was found in the Linux kernel in versions before 5.9-rc6. When changing screen size, an out-of-bounds memory write can occur leading to memory corruption or a denial of service. Due to the nature of the flaw, privilege escalation cannot be fully ruled out.

Data is provided by the National Vulnerability Database (NVD)
LinuxLinux Kernel Version >= 2.2.3 < 5.9.0
LinuxLinux Kernel Version5.9.0 Update-
LinuxLinux Kernel Version5.9.0 Updaterc1
LinuxLinux Kernel Version5.9.0 Updaterc2
LinuxLinux Kernel Version5.9.0 Updaterc3
LinuxLinux Kernel Version5.9.0 Updaterc4
LinuxLinux Kernel Version5.9.0 Updaterc5
DebianDebian Linux Version9.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.17% 0.389
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.6 0.8 4.7
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:H
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.