vulnerability
Huawei EulerOS: CVE-2016-2085: kernel security update
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 2 | (AV:L/AC:L/Au:N/C:N/I:P/A:N) | Apr 27, 2016 | Feb 24, 2020 | Feb 24, 2020 |
Severity
2
CVSS
(AV:L/AC:L/Au:N/C:N/I:P/A:N)
Published
Apr 27, 2016
Added
Feb 24, 2020
Modified
Feb 24, 2020
Description
The evm_verify_hmac function in security/integrity/evm/evm_main.c in the Linux kernel before 4.5 does not properly copy data, which makes it easier for local users to forge MAC values via a timing side-channel attack.
Solutions
huawei-euleros-2_0_sp5-upgrade-kernelhuawei-euleros-2_0_sp5-upgrade-kernel-develhuawei-euleros-2_0_sp5-upgrade-kernel-headershuawei-euleros-2_0_sp5-upgrade-kernel-toolshuawei-euleros-2_0_sp5-upgrade-kernel-tools-libshuawei-euleros-2_0_sp5-upgrade-perfhuawei-euleros-2_0_sp5-upgrade-python-perf
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.