vulnerability
SUSE: CVE-2020-12464: SUSE Linux Security Advisory
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
7 | (AV:L/AC:L/Au:N/C:C/I:C/A:C) | Apr 29, 2020 | Jun 10, 2020 | Feb 4, 2022 |
Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
Published
Apr 29, 2020
Added
Jun 10, 2020
Modified
Feb 4, 2022
Description
usb_sg_cancel in drivers/usb/core/message.c in the Linux kernel before 5.6.8 has a use-after-free because a transfer occurs without a reference, aka CID-056ad39ee925.
Solution(s)
suse-upgrade-cluster-md-kmp-defaultsuse-upgrade-dlm-kmp-defaultsuse-upgrade-gfs2-kmp-defaultsuse-upgrade-kernel-defaultsuse-upgrade-kernel-default-extrasuse-upgrade-kernel-docssuse-upgrade-kernel-obs-buildsuse-upgrade-ocfs2-kmp-default
References
- SUSE-SUSE-SU-2020:1587-1
- SUSE-SUSE-SU-2020:1599-1
- SUSE-SUSE-SU-2020:1602-1
- SUSE-SUSE-SU-2020:1603-1
- SUSE-SUSE-SU-2020:1604-1
- SUSE-SUSE-SU-2020:1605-1
- SUSE-SUSE-SU-2020:1663-1
- SUSE-SUSE-SU-2020:2156-1
- SUSE-SUSE-SU-2020:2478-1
- SUSE-SUSE-SU-2020:2487-1
- UBUNTU-USN-4387-1
- UBUNTU-USN-4388-1
- UBUNTU-USN-4389-1
- UBUNTU-USN-4390-1
- UBUNTU-USN-4391-1
- NVD-CVE-2020-12464

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.