CVE-2020-10942 - CERT CVE
ID CVE-2020-10942
Sažetak In the Linux kernel before 5.5.8, get_raw_socket in drivers/vhost/net.c lacks validation of an sk_family field, which might allow attackers to trigger kernel stack corruption via crafted system calls.
Reference
CVSS
Base: 5.4
Impact: 7.8
Exploitability:3.4
Pristup
VektorSloženostAutentikacija
LOCAL MEDIUM NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE PARTIAL COMPLETE
CVSS vektor AV:L/AC:M/Au:N/C:N/I:P/A:C
Zadnje važnije ažuriranje 22-04-2022 - 19:06
Objavljeno 24-03-2020 - 22:15