ZeroHour

CVE-2020-12659

PoC
CVSS 3.1
6.7 medium
EPSS
<1%p51
Published
()
Modified
Description

An issue was discovered in the Linux kernel before 5.6.7. xdp_umem_reg in net/xdp/xdp_umem.c has an out-of-bounds write (by a user with the CAP_NET_ADMIN capability) because of a lack of headroom validation.

Vendors
linuxnetapp
Products
linux kernel, active iq unified manager, cloud backup, hci baseboard management controller, solidfire \& hci management node, steelstore cloud integrated storage, aff baseboard management controller, solidfire baseboard management controller
Weakness
CWE-787
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.