A flaw null pointer dereference in the Linux kernel cgroupv2 subsystem in versions before 5.7.10 was found in the way when reboot the system. A local user could use this flaw to crash the system or escalate their privileges on the system.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
|
Configuration 7 (hide)
AND |
|
History
21 Nov 2024, 05:03
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.opensuse.org/opensuse-security-announce/2020-08/msg00047.html - Mailing List, Third Party Advisory | |
References | () http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00007.html - Mailing List, Third Party Advisory | |
References | () https://bugzilla.kernel.org/show_bug.cgi?id=208003 - Exploit, Issue Tracking, Vendor Advisory | |
References | () https://bugzilla.redhat.com/show_bug.cgi?id=1868453 - Issue Tracking, Patch, Third Party Advisory | |
References | () https://lists.debian.org/debian-lts-announce/2020/09/msg00025.html - Mailing List, Third Party Advisory | |
References | () https://lists.debian.org/debian-lts-announce/2020/10/msg00032.html - Mailing List, Third Party Advisory | |
References | () https://lists.debian.org/debian-lts-announce/2020/10/msg00034.html - Mailing List, Third Party Advisory | |
References | () https://lore.kernel.org/netdev/CAM_iQpUKQJrj8wE+Qa8NGR3P0L+5Uz=qo-O5+k_P60HzTde6aw%40mail.gmail.com/t/ - Exploit, Vendor Advisory | |
References | () https://security.netapp.com/advisory/ntap-20200904-0002/ - Third Party Advisory | |
References | () https://usn.ubuntu.com/4483-1/ - Third Party Advisory | |
References | () https://usn.ubuntu.com/4484-1/ - Third Party Advisory | |
References | () https://usn.ubuntu.com/4526-1/ - Third Party Advisory |
Information
Published : 2020-08-19 15:15
Updated : 2024-11-21 05:03
NVD link : CVE-2020-14356
Mitre link : CVE-2020-14356
CVE.ORG link : CVE-2020-14356
JSON object : View
Products Affected
netapp
- cloud_backup
- hci_management_node
- solidfire_baseboard_management_controller
- active_iq_unified_manager
- solidfire
- solidfire_baseboard_management_controller_firmware
redhat
- enterprise_linux
canonical
- ubuntu_linux
opensuse
- leap
linux
- linux_kernel
debian
- debian_linux
CWE
CWE-476
NULL Pointer Dereference