Wind River Support Network

HomeDefectsLIN10-8387
Fixed

LIN10-8387 : Security Advisory - linux - CVE-2020-35519

Created: Mar 17, 2021    Updated: May 17, 2021
Resolved Date: May 17, 2021
Found In Version: 10.17.41.1
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Kernel

Description

An out-of-bounds (OOB) memory access flaw was found in x25_bind in
net/x25/af_x25.c in the Linux kernel. A bounds check failure allows a local
attacker with a user account on the system to gain access to out-of-bounds
memory, leading to a system crash or a leak of internal kernel information.
The highest threat from this vulnerability is to confidentiality,
integrity, as well as system availability.

Maybe fixed by 6ee50c8e262a ("net/x25: prevent a couple of overflows")?


CREATE(Triage):(User=admin) [CVE-2020-35519|https://nvd.nist.gov/vuln/detail/CVE-2020-35519]

CVEs


Live chat
Online