Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-10774

Опубликовано: 27 мая 2021
Источник: nvd
CVSS3: 5.5
CVSS2: 2.1
EPSS Низкий

Описание

A memory disclosure flaw was found in the Linux kernel's versions before 4.18.0-193.el8 in the sysctl subsystem when reading the /proc/sys/kernel/rh_features file. This flaw allows a local user to read uninitialized values from the kernel memory. The highest threat from this vulnerability is to confidentiality.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 4.18.0-193.el8 (исключая)

EPSS

Процентиль: 12%
0.00043
Низкий

5.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-805

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 4 лет назад

A memory disclosure flaw was found in the Linux kernel's versions before 4.18.0-193.el8 in the sysctl subsystem when reading the /proc/sys/kernel/rh_features file. This flaw allows a local user to read uninitialized values from the kernel memory. The highest threat from this vulnerability is to confidentiality.

CVSS3: 5.5
redhat
около 5 лет назад

A memory disclosure flaw was found in the Linux kernel's versions before 4.18.0-193.el8 in the sysctl subsystem when reading the /proc/sys/kernel/rh_features file. This flaw allows a local user to read uninitialized values from the kernel memory. The highest threat from this vulnerability is to confidentiality.

CVSS3: 5.5
debian
около 4 лет назад

A memory disclosure flaw was found in the Linux kernel's versions befo ...

github
около 3 лет назад

A memory disclosure flaw was found in the Linux kernel's versions before 4.18.0-193.el8 in the sysctl subsystem when reading the /proc/sys/kernel/rh_features file. This flaw allows a local user to read uninitialized values from the kernel memory. The highest threat from this vulnerability is to confidentiality.

oracle-oval
больше 4 лет назад

ELSA-2020-4431: kernel security, bug fix, and enhancement update (MODERATE)

EPSS

Процентиль: 12%
0.00043
Низкий

5.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-805