A flaw was found in the Linux kernel. An index buffer overflow during Direct IO write leading to the NFS client to crash. In some cases, a reach out of the index after one memory allocation by kmalloc will cause a kernel panic. The highest threat from this vulnerability is to data confidentiality and system availability.
CVSS Details
- CVSS 3.1 Base Score: 6
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade kernelUpgrade kernel-rt | Oct 1, 2020 | Sep 29, 2020 |
| Debian | — | Upgrade linux | Jul 30, 2024 | Jun 2, 2021 |
| Oracle_linux | — | Upgrade kernel | Oct 7, 2020 | May 13, 2020 |
| Redhat_linux | — | Upgrade kernel-rtUpgrade kernelNo solution exists | Oct 1, 2020 | Sep 29, 2020 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub