CVE-2020-29660
- EPSS 0.07%
- Published 09.12.2020 17:15:31
- Last modified 21.11.2024 05:24:22
A locking inconsistency issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_io.c and drivers/tty/tty_jobctrl.c may allow a read-after-free attack against TIOCGSID, aka CID-c8bcd9c5be24.
CVE-2020-29661
- EPSS 0.22%
- Published 09.12.2020 17:15:31
- Last modified 21.11.2024 05:24:23
A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows a use-after-free attack against TIOCSPGRP, aka CID-54ffccbf053b.
- EPSS 0.1%
- Published 28.11.2020 07:15:11
- Last modified 21.11.2024 05:23:55
An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the Linux kernel before 5.7.5. The copy-on-write implementation can grant unintended write access because of a race condition in a THP mapcount check, aka CID-c444eb564fb1.
- EPSS 0.59%
- Published 28.11.2020 07:15:11
- Last modified 21.11.2024 05:23:55
An issue was discovered in kmem_cache_alloc_bulk in mm/slub.c in the Linux kernel before 5.5.11. The slowpath lacks the required TID increment, aka CID-fd4d9c7d0c71.
CVE-2020-29374
- EPSS 0.02%
- Published 28.11.2020 07:15:11
- Last modified 21.11.2024 05:23:56
An issue was discovered in the Linux kernel before 5.7.3, related to mm/gup.c and mm/huge_memory.c. The get_user_pages (aka gup) implementation, when used for a copy-on-write page, does not properly consider the semantics of read operations and there...
CVE-2020-15436
- EPSS 0.12%
- Published 23.11.2020 21:15:11
- Last modified 21.11.2024 05:05:33
Use-after-free vulnerability in fs/block_dev.c in the Linux kernel before 5.8 allows local users to gain privileges or cause a denial of service by leveraging improper access to a certain error field.
CVE-2020-25643
- EPSS 0.39%
- Published 06.10.2020 14:15:12
- Last modified 21.11.2024 05:18:19
A flaw was found in the HDLC_PPP module of the Linux kernel in versions before 5.9-rc7. Memory corruption and a read overflow is caused by improper input validation in the ppp_cp_parse_cr function which can cause the system to crash or cause a denial...
CVE-2020-16166
- EPSS 1.85%
- Published 30.07.2020 21:15:11
- Last modified 21.11.2024 05:06:53
The Linux kernel through 5.7.11 allows remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG, aka CID-f227e3ec3b5c. This is related to drivers/char/random.c and kernel/time/timer.c...
CVE-2020-15025
- EPSS 1.89%
- Published 24.06.2020 19:15:10
- Last modified 21.11.2024 05:04:38
ntpd in ntp 4.2.8 before 4.2.8p15 and 4.3.x before 4.3.101 allows remote attackers to cause a denial of service (memory consumption) by sending packets, because memory is not freed in situations where a CMAC key is used and associated with a CMAC alg...
CVE-2020-14155
- EPSS 0.15%
- Published 15.06.2020 17:15:10
- Last modified 21.11.2024 05:02:45
libpcre in PCRE before 8.44 allows an integer overflow via a large number after a (?C substring.