ZeroHour

CVE-2020-27815

PoC ×2
CVSS 3.1
7.8 high
EPSS
<1%p54
Published
()
Modified
Description

A flaw was found in the JFS filesystem code in the Linux Kernel which allows a local attacker with the ability to set extended attributes to panic the system, causing memory corruption or escalating privileges. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

Vendors
linuxdebiannetapp
Products
linux kernel, debian linux, h300s firmware, h500s firmware, h700s firmware, h300e firmware, h500e firmware, h700e firmware, h410s firmware, h410c firmware, aff a250 firmware, fas500f firmware
Weakness
CWE-119, CWE-787
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.