A flaw was found in the Linux kernel. An index buffer overflow during Direct IO write leading to the NFS client to crash. In some cases, a reach out of the index after one memory allocation by kmalloc will cause a kernel panic. The highest threat from this vulnerability is to data confidentiality and system availability.
CVSS Details
- CVSS 3.1 Base Score: 6
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | centos-upgrade-kernelcentos-upgrade-kernel-rt | Oct 1, 2020 | Sep 29, 2020 |
| Debian | debian-upgrade-linux | Jul 30, 2024 | Jun 2, 2021 | |
| Oracle_linux | — | oracle-linux-upgrade-kernel | Oct 7, 2020 | May 13, 2020 |
| Redhat_linux | — | redhat-upgrade-kernelredhat-upgrade-kernel-rt | Oct 1, 2020 | Sep 29, 2020 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub