CVE-2020-25212
—CVSS 3.1
7.0 high
EPSS
<1%p20
Published
()
Modified
Description
A TOCTOU mismatch in the NFS client code in the Linux kernel before 5.8.3 could be used by local attackers to corrupt memory or possibly have unspecified other impact because a size check is in fs/nfs/nfs4proc.c instead of fs/nfs/nfs4xdr.c, aka CID-b4487b935452.
In the news0 stories
No ingested article mentions this CVE yet.