vulnerability

Ubuntu: (Multiple Advisories) (CVE-2020-12656): Linux kernel vulnerabilities

Severity
2
CVSS
(AV:L/AC:L/Au:N/C:N/I:N/A:P)
Published
May 5, 2020
Added
Sep 2, 2020
Modified
Aug 18, 2025

Description

gss_mech_free in net/sunrpc/auth_gss/gss_mech_switch.c in the rpcsec_gss_krb5 implementation in the Linux kernel through 5.6.10 lacks certain domain_release calls, leading to a memory leak. Note: This was disputed with the assertion that the issue does not grant any access not already available. It is a problem that on unloading a specific kernel module some memory is leaked, but loading kernel modules is a privileged operation. A user could also write a kernel module to consume any amount of memory they like and load that replicating the effect of this bug

Solutions

ubuntu-upgrade-linux-image-4-15-0-1051-oracleubuntu-upgrade-linux-image-4-15-0-1067-gkeubuntu-upgrade-linux-image-4-15-0-1068-raspi2ubuntu-upgrade-linux-image-4-15-0-1072-kvmubuntu-upgrade-linux-image-4-15-0-1080-awsubuntu-upgrade-linux-image-4-15-0-1081-gcpubuntu-upgrade-linux-image-4-15-0-1084-snapdragonubuntu-upgrade-linux-image-4-15-0-1093-azureubuntu-upgrade-linux-image-4-15-0-1094-oemubuntu-upgrade-linux-image-4-15-0-115-genericubuntu-upgrade-linux-image-4-15-0-115-generic-lpaeubuntu-upgrade-linux-image-4-15-0-115-lowlatencyubuntu-upgrade-linux-image-5-4-0-1016-raspiubuntu-upgrade-linux-image-5-4-0-1022-awsubuntu-upgrade-linux-image-5-4-0-1022-gcpubuntu-upgrade-linux-image-5-4-0-1022-oracleubuntu-upgrade-linux-image-5-4-0-1023-azureubuntu-upgrade-linux-image-5-4-0-45-genericubuntu-upgrade-linux-image-5-4-0-45-generic-lpaeubuntu-upgrade-linux-image-5-4-0-45-lowlatencyubuntu-upgrade-linux-image-awsubuntu-upgrade-linux-image-aws-edgeubuntu-upgrade-linux-image-aws-hweubuntu-upgrade-linux-image-aws-lts-18-04ubuntu-upgrade-linux-image-azureubuntu-upgrade-linux-image-azure-edgeubuntu-upgrade-linux-image-azure-lts-18-04ubuntu-upgrade-linux-image-gcpubuntu-upgrade-linux-image-gcp-lts-18-04ubuntu-upgrade-linux-image-genericubuntu-upgrade-linux-image-generic-hwe-16-04ubuntu-upgrade-linux-image-generic-hwe-18-04ubuntu-upgrade-linux-image-generic-lpaeubuntu-upgrade-linux-image-generic-lpae-hwe-16-04ubuntu-upgrade-linux-image-generic-lpae-hwe-18-04ubuntu-upgrade-linux-image-gkeubuntu-upgrade-linux-image-gke-4-15ubuntu-upgrade-linux-image-gke-5-4ubuntu-upgrade-linux-image-gkeop-5-4ubuntu-upgrade-linux-image-kvmubuntu-upgrade-linux-image-lowlatencyubuntu-upgrade-linux-image-lowlatency-hwe-16-04ubuntu-upgrade-linux-image-lowlatency-hwe-18-04ubuntu-upgrade-linux-image-oemubuntu-upgrade-linux-image-oem-osp1ubuntu-upgrade-linux-image-oracleubuntu-upgrade-linux-image-oracle-lts-18-04ubuntu-upgrade-linux-image-raspiubuntu-upgrade-linux-image-raspi-hwe-18-04ubuntu-upgrade-linux-image-raspi2ubuntu-upgrade-linux-image-snapdragonubuntu-upgrade-linux-image-snapdragon-hwe-18-04ubuntu-upgrade-linux-image-virtualubuntu-upgrade-linux-image-virtual-hwe-16-04ubuntu-upgrade-linux-image-virtual-hwe-18-04

References

    Title
    NEW

    Explore Exposure Command

    Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.