Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-12364

Опубликовано: 17 фев. 2021
Источник: debian
EPSS Низкий

Описание

Null pointer reference in some Intel(R) Graphics Drivers for Windows* before version 26.20.100.7212 and before version Linux kernel version 5.5 may allow a privileged user to potentially enable a denial of service via local access.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed5.14.6-1package
linuxignoredbullseyepackage
linuxignoredbusterpackage
firmware-nonfreefixed20210208-1package
firmware-nonfreeignoredstretchpackage

Примечания

  • Short of details: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00438.html

  • Per Intel, this was fixed by a firmware update. v49.0.1 of the

  • firmware is required. The new firmware requires a kernel patch

  • https://git.kernel.org/linus/c784e5249e773689e38d2bc1749f08b986621a26

  • Firmware was added via https://git.kernel.org/pub/scm/linux/kernel/git/firmware/linux-firmware.git/commit/?id=c487f7dadcd21116613441ed355b764003b3f57b

  • The vulnerability is fixed in firmware, but needs an updated Linux kernel to load

  • the updated firmware, thus also marking linux as affected

EPSS

Процентиль: 30%
0.00105
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 4 лет назад

Null pointer reference in some Intel(R) Graphics Drivers for Windows* before version 26.20.100.7212 and before version Linux kernel version 5.5 may allow a privileged user to potentially enable a denial of service via local access.

CVSS3: 5.5
redhat
больше 4 лет назад

Null pointer reference in some Intel(R) Graphics Drivers for Windows* before version 26.20.100.7212 and before version Linux kernel version 5.5 may allow a privileged user to potentially enable a denial of service via local access.

CVSS3: 5.5
nvd
больше 4 лет назад

Null pointer reference in some Intel(R) Graphics Drivers for Windows* before version 26.20.100.7212 and before version Linux kernel version 5.5 may allow a privileged user to potentially enable a denial of service via local access.

CVSS3: 5.5
github
около 3 лет назад

Null pointer reference in some Intel(R) Graphics Drivers for Windows* before version 26.20.100.7212 and before version Linux kernel version 5.5 may allow a privileged user to potentially enable a denial of service via local access.

CVSS3: 5.5
fstec
больше 4 лет назад

Уязвимость драйвера графических систем Intel Graphics Drivers, вызванная разыменованием нулевого указателя, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 30%
0.00105
Низкий