vulnerability

Red Hat OpenShift: CVE-2020-10774: kernel: possibility of memory disclosure when reading the file /proc/sys/kernel/rh_features

Severity
2
CVSS
(AV:L/AC:L/Au:N/C:P/I:N/A:N)
Published
2021-03-12
Added
2021-03-12
Modified
2025-04-11

Description

A memory disclosure flaw was found in the Linux kernel's versions before 4.18.0-193.el8 in the sysctl subsystem when reading the /proc/sys/kernel/rh_features file. This flaw allows a local user to read uninitialized values from the kernel memory. The highest threat from this vulnerability is to confidentiality.

Solution

linuxrpm-upgrade-redhat-coreos
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.