Svi
Pretraži prema proizvođaču
Pretraži prema CWE oznaci
O usluzi
Pretplate
Jezik
hr
en
CVE-2020-36158 - CERT CVE
CVE-2020-36158
ID
CVE-2020-36158
Sažetak
mwifiex_cmd_802_11_ad_hoc_start in drivers/net/wireless/marvell/mwifiex/join.c in the Linux kernel through 5.10.4 might allow remote attackers to execute arbitrary code via a long SSID value, aka CID-5c455c5ab332.
Reference
https://github.com/torvalds/linux/commit/5c455c5ab332773464d02ba17015acdca198f03d
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=5c455c5ab332773464d02ba17015acdca198f03d
https://www.debian.org/security/2021/dsa-4843
https://security.netapp.com/advisory/ntap-20210212-0002/
https://lists.debian.org/debian-lts-announce/2021/02/msg00018.html
https://lists.debian.org/debian-lts-announce/2021/03/msg00010.html
https://patchwork.kernel.org/project/linux-wireless/patch/20201206084801.26479-1-ruc_zhangxiaohui%40163.com/
https://lore.kernel.org/r/20201206084801.26479-1-ruc_zhangxiaohui%40163.com
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HCHBIRS27VMOGMBHPWP2R7SZRFXT6O6U/
CVSS
Base:
7.2
Impact:
10.0
Exploitability:
3.9
Pristup
Vektor
Složenost
Autentikacija
LOCAL
LOW
NONE
Impact
Povjerljivost
Cjelovitost
Dostupnost
COMPLETE
COMPLETE
COMPLETE
CVSS vektor
AV:L/AC:L/Au:N/C:C/I:C/A:C
Zadnje važnije ažuriranje
07-11-2023 - 03:22
Objavljeno
05-01-2021 - 05:15