Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-35508

Опубликовано: 26 мар. 2021
Источник: debian
EPSS Низкий

Описание

A flaw possibility of race condition and incorrect initialization of the process id was found in the Linux kernel child/parent process identification handling while filtering signal handlers. A local attacker is able to abuse this flaw to bypass checks to send any signal to a privileged process.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed5.9.9-1package
linuxfixed4.19.160-1busterpackage
linuxfixed4.9.246-1stretchpackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=1902724

EPSS

Процентиль: 18%
0.00056
Низкий

Связанные уязвимости

CVSS3: 4.5
ubuntu
около 4 лет назад

A flaw possibility of race condition and incorrect initialization of the process id was found in the Linux kernel child/parent process identification handling while filtering signal handlers. A local attacker is able to abuse this flaw to bypass checks to send any signal to a privileged process.

CVSS3: 4.5
redhat
больше 4 лет назад

A flaw possibility of race condition and incorrect initialization of the process id was found in the Linux kernel child/parent process identification handling while filtering signal handlers. A local attacker is able to abuse this flaw to bypass checks to send any signal to a privileged process.

CVSS3: 4.5
nvd
около 4 лет назад

A flaw possibility of race condition and incorrect initialization of the process id was found in the Linux kernel child/parent process identification handling while filtering signal handlers. A local attacker is able to abuse this flaw to bypass checks to send any signal to a privileged process.

CVSS3: 4.5
github
около 3 лет назад

A flaw possibility of race condition and incorrect initialization of the process id was found in the Linux kernel child/parent process identification handling while filtering signal handlers. A local attacker is able to abuse this flaw to bypass checks to send any signal to a privileged process.

CVSS3: 4.5
fstec
больше 4 лет назад

Уязвимость ядра операционной системы Linux, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 18%
0.00056
Низкий