Svi
Pretraži prema proizvođaču
Pretraži prema CWE oznaci
O usluzi
Pretplate
Jezik
hr
en
CVE-2020-29372 - CERT CVE
CVE-2020-29372
ID
CVE-2020-29372
Sažetak
An issue was discovered in do_madvise in mm/madvise.c in the Linux kernel before 5.6.8. There is a race condition between coredump operations and the IORING_OP_MADVISE implementation, aka CID-bc0c4d1e176e.
Reference
http://packetstormsecurity.com/files/162117/Kernel-Live-Patch-Security-Notice-LSN-0075-1.html
https://bugs.chromium.org/p/project-zero/issues/detail?id=2029
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.6.8
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=bc0c4d1e176eeb614dc8734fc3ace34292771f11
http://packetstormsecurity.com/files/162117/Kernel-Live-Patch-Security-Notice-LSN-0075-1.html
https://bugs.chromium.org/p/project-zero/issues/detail?id=2029
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.6.8
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=bc0c4d1e176eeb614dc8734fc3ace34292771f11
https://project-zero.issues.chromium.org/issues/42451131
CVSS
Base:
4.7
Impact:
6.9
Exploitability:
3.4
Pristup
Vektor
Složenost
Autentikacija
LOCAL
MEDIUM
NONE
Impact
Povjerljivost
Cjelovitost
Dostupnost
NONE
NONE
COMPLETE
CVSS vektor
AV:L/AC:M/Au:N/C:N/I:N/A:C
Zadnje važnije ažuriranje
29-05-2026 - 16:16
Objavljeno
28-11-2020 - 07:15