Уязвимость CVE-2020-27675: Информация
Описание
An issue was discovered in the Linux kernel through 5.9.1, as used with Xen through 4.14.x. drivers/xen/events/events_base.c allows event-channel removal during the event-handling loop (a race condition). This can cause a use-after-free or NULL pointer dereference, as demonstrated by a dom0 crash via events for an in-reconfiguration paravirtualized device, aka CID-073d0552ead5.
Важность: MEDIUM (4,7) Вектор: CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Опубликовано: 23 октября 2020 г.
Изменено: 7 ноября 2023 г.
Исправленные пакеты
Ссылки на рекомендации, решения и инструменты
Ссылка | Ресурс |
---|---|
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=073d0552ead5bfc7a3a9c01de590e924f11b5dd2 |
|
https://github.com/torvalds/linux/commit/073d0552ead5bfc7a3a9c01de590e924f11b5dd2 |
|
https://xenbits.xen.org/xsa/advisory-331.html |
|
GLSA-202011-06 |
|
[debian-lts-announce] 20201210 [SECURITY] [DLA 2483-1] linux-4.19 security update |
|
[debian-lts-announce] 20201218 [SECURITY] [DLA 2494-1] linux security update |
|
[oss-security] 20210119 Xen Security Advisory 331 v3 (CVE-2020-27675) - Race condition in Linux event handler may crash dom0 |
|
FEDORA-2020-474d747b60 | |
FEDORA-2020-09e4d062fe | |
FEDORA-2020-920a258c79 |