Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m4f8-m4jg-vm84

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, and 4.19.x before 4.19.140 has a use-after-free because skcd->no_refcnt was not considered during a backport of a CVE-2020-14356 patch. This is related to the cgroups feature.

The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, and 4.19.x before 4.19.140 has a use-after-free because skcd->no_refcnt was not considered during a backport of a CVE-2020-14356 patch. This is related to the cgroups feature.

EPSS

Процентиль: 37%
0.00449
Низкий

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 6 лет назад

The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, and 4.19.x before 4.19.140 has a use-after-free because skcd->no_refcnt was not considered during a backport of a CVE-2020-14356 patch. This is related to the cgroups feature.

CVSS3: 7
redhat
около 6 лет назад

The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, and 4.19.x before 4.19.140 has a use-after-free because skcd->no_refcnt was not considered during a backport of a CVE-2020-14356 patch. This is related to the cgroups feature.

CVSS3: 7.8
nvd
почти 6 лет назад

The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, and 4.19.x before 4.19.140 has a use-after-free because skcd->no_refcnt was not considered during a backport of a CVE-2020-14356 patch. This is related to the cgroups feature.

CVSS3: 7.8
debian
почти 6 лет назад

The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, and 4.1 ...

CVSS3: 7.8
fstec
около 6 лет назад

Уязвимость функции cgroups ядра операционной системы Linux, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 37%
0.00449
Низкий

Дефекты

CWE-416