Логотип exploitDog
bind:"CVE-2020-2732" OR bind:"CVE-2020-11884" OR bind:"CVE-2020-10711"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2020-2732" OR bind:"CVE-2020-11884" OR bind:"CVE-2020-10711"

Количество 57

Количество 57

oracle-oval логотип

ELSA-2020-2102

около 5 лет назад

ELSA-2020-2102: kernel security and bug fix update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2020-2732

около 5 лет назад

A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 guest when nested virtualisation is enabled. Under some circumstances, an L2 guest may trick the L0 guest into accessing sensitive L1 resources that should be inaccessible to the L2 guest.

CVSS3: 5.8
EPSS: Низкий
redhat логотип

CVE-2020-2732

больше 5 лет назад

A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 guest when nested virtualisation is enabled. Under some circumstances, an L2 guest may trick the L0 guest into accessing sensitive L1 resources that should be inaccessible to the L2 guest.

CVSS3: 5.8
EPSS: Низкий
nvd логотип

CVE-2020-2732

около 5 лет назад

A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 guest when nested virtualisation is enabled. Under some circumstances, an L2 guest may trick the L0 guest into accessing sensitive L1 resources that should be inaccessible to the L2 guest.

CVSS3: 5.8
EPSS: Низкий
debian логотип

CVE-2020-2732

около 5 лет назад

A flaw was discovered in the way that the KVM hypervisor handled instr ...

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-pqrp-hrrg-q69p

около 3 лет назад

A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 guest when nested virtualisation is enabled. Under some circumstances, an L2 guest may trick the L0 guest into accessing sensitive L1 resources that should be inaccessible to the L2 guest.

EPSS: Низкий
oracle-oval логотип

ELSA-2020-5543

больше 5 лет назад

ELSA-2020-5543: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-5542

больше 5 лет назад

ELSA-2020-5542: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2020-5540

больше 5 лет назад

ELSA-2020-5540: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2020-05885

больше 5 лет назад

Уязвимость подсистемы виртуализации Kernel-based Virtual Machine (KVM) ядра операционной системы Linux, связанная с раскрытием информации, позволяющая нарушителю получить доступ к защищаемой информации

CVSS3: 6.8
EPSS: Низкий
ubuntu логотип

CVE-2020-11884

около 5 лет назад

In the Linux kernel 4.19 through 5.6.7 on the s390 platform, code execution may occur because of a race condition, as demonstrated by code in enable_sacf_uaccess in arch/s390/lib/uaccess.c that fails to protect against a concurrent page table upgrade, aka CID-3f777e19d171. A crash could also occur.

CVSS3: 7
EPSS: Низкий
redhat логотип

CVE-2020-11884

около 5 лет назад

In the Linux kernel 4.19 through 5.6.7 on the s390 platform, code execution may occur because of a race condition, as demonstrated by code in enable_sacf_uaccess in arch/s390/lib/uaccess.c that fails to protect against a concurrent page table upgrade, aka CID-3f777e19d171. A crash could also occur.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2020-11884

около 5 лет назад

In the Linux kernel 4.19 through 5.6.7 on the s390 platform, code execution may occur because of a race condition, as demonstrated by code in enable_sacf_uaccess in arch/s390/lib/uaccess.c that fails to protect against a concurrent page table upgrade, aka CID-3f777e19d171. A crash could also occur.

CVSS3: 7
EPSS: Низкий
msrc логотип

CVE-2020-11884

больше 4 лет назад

CVSS3: 7
EPSS: Низкий
debian логотип

CVE-2020-11884

около 5 лет назад

In the Linux kernel 4.19 through 5.6.7 on the s390 platform, code exec ...

CVSS3: 7
EPSS: Низкий
ubuntu логотип

CVE-2020-10711

около 5 лет назад

A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's category bitmap into the SELinux extensible bitmap via the' ebitmap_netlbl_import' routine. While processing the CIPSO restricted bitmap tag in the 'cipso_v4_parsetag_rbm' routine, it sets the security attribute to indicate that the category bitmap is present, even if it has not been allocated. This issue leads to a NULL pointer dereference issue while importing the same category bitmap into SELinux. This flaw allows a remote network user to crash the system kernel, resulting in a denial of service.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2020-10711

около 5 лет назад

A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's category bitmap into the SELinux extensible bitmap via the' ebitmap_netlbl_import' routine. While processing the CIPSO restricted bitmap tag in the 'cipso_v4_parsetag_rbm' routine, it sets the security attribute to indicate that the category bitmap is present, even if it has not been allocated. This issue leads to a NULL pointer dereference issue while importing the same category bitmap into SELinux. This flaw allows a remote network user to crash the system kernel, resulting in a denial of service.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2020-10711

около 5 лет назад

A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's category bitmap into the SELinux extensible bitmap via the' ebitmap_netlbl_import' routine. While processing the CIPSO restricted bitmap tag in the 'cipso_v4_parsetag_rbm' routine, it sets the security attribute to indicate that the category bitmap is present, even if it has not been allocated. This issue leads to a NULL pointer dereference issue while importing the same category bitmap into SELinux. This flaw allows a remote network user to crash the system kernel, resulting in a denial of service.

CVSS3: 5.9
EPSS: Низкий
msrc логотип

CVE-2020-10711

больше 4 лет назад

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2020-10711

около 5 лет назад

A NULL pointer dereference flaw was found in the Linux kernel's SELinu ...

CVSS3: 5.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2020-2102

ELSA-2020-2102: kernel security and bug fix update (IMPORTANT)

около 5 лет назад
ubuntu логотип
CVE-2020-2732

A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 guest when nested virtualisation is enabled. Under some circumstances, an L2 guest may trick the L0 guest into accessing sensitive L1 resources that should be inaccessible to the L2 guest.

CVSS3: 5.8
0%
Низкий
около 5 лет назад
redhat логотип
CVE-2020-2732

A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 guest when nested virtualisation is enabled. Under some circumstances, an L2 guest may trick the L0 guest into accessing sensitive L1 resources that should be inaccessible to the L2 guest.

CVSS3: 5.8
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-2732

A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 guest when nested virtualisation is enabled. Under some circumstances, an L2 guest may trick the L0 guest into accessing sensitive L1 resources that should be inaccessible to the L2 guest.

CVSS3: 5.8
0%
Низкий
около 5 лет назад
debian логотип
CVE-2020-2732

A flaw was discovered in the way that the KVM hypervisor handled instr ...

CVSS3: 5.8
0%
Низкий
около 5 лет назад
github логотип
GHSA-pqrp-hrrg-q69p

A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 guest when nested virtualisation is enabled. Under some circumstances, an L2 guest may trick the L0 guest into accessing sensitive L1 resources that should be inaccessible to the L2 guest.

0%
Низкий
около 3 лет назад
oracle-oval логотип
ELSA-2020-5543

ELSA-2020-5543: Unbreakable Enterprise kernel security update (IMPORTANT)

больше 5 лет назад
oracle-oval логотип
ELSA-2020-5542

ELSA-2020-5542: Unbreakable Enterprise kernel security update (IMPORTANT)

больше 5 лет назад
oracle-oval логотип
ELSA-2020-5540

ELSA-2020-5540: Unbreakable Enterprise kernel security update (IMPORTANT)

больше 5 лет назад
fstec логотип
BDU:2020-05885

Уязвимость подсистемы виртуализации Kernel-based Virtual Machine (KVM) ядра операционной системы Linux, связанная с раскрытием информации, позволяющая нарушителю получить доступ к защищаемой информации

CVSS3: 6.8
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-11884

In the Linux kernel 4.19 through 5.6.7 on the s390 platform, code execution may occur because of a race condition, as demonstrated by code in enable_sacf_uaccess in arch/s390/lib/uaccess.c that fails to protect against a concurrent page table upgrade, aka CID-3f777e19d171. A crash could also occur.

CVSS3: 7
0%
Низкий
около 5 лет назад
redhat логотип
CVE-2020-11884

In the Linux kernel 4.19 through 5.6.7 on the s390 platform, code execution may occur because of a race condition, as demonstrated by code in enable_sacf_uaccess in arch/s390/lib/uaccess.c that fails to protect against a concurrent page table upgrade, aka CID-3f777e19d171. A crash could also occur.

CVSS3: 7
0%
Низкий
около 5 лет назад
nvd логотип
CVE-2020-11884

In the Linux kernel 4.19 through 5.6.7 on the s390 platform, code execution may occur because of a race condition, as demonstrated by code in enable_sacf_uaccess in arch/s390/lib/uaccess.c that fails to protect against a concurrent page table upgrade, aka CID-3f777e19d171. A crash could also occur.

CVSS3: 7
0%
Низкий
около 5 лет назад
msrc логотип
CVSS3: 7
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2020-11884

In the Linux kernel 4.19 through 5.6.7 on the s390 platform, code exec ...

CVSS3: 7
0%
Низкий
около 5 лет назад
ubuntu логотип
CVE-2020-10711

A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's category bitmap into the SELinux extensible bitmap via the' ebitmap_netlbl_import' routine. While processing the CIPSO restricted bitmap tag in the 'cipso_v4_parsetag_rbm' routine, it sets the security attribute to indicate that the category bitmap is present, even if it has not been allocated. This issue leads to a NULL pointer dereference issue while importing the same category bitmap into SELinux. This flaw allows a remote network user to crash the system kernel, resulting in a denial of service.

CVSS3: 5.9
1%
Низкий
около 5 лет назад
redhat логотип
CVE-2020-10711

A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's category bitmap into the SELinux extensible bitmap via the' ebitmap_netlbl_import' routine. While processing the CIPSO restricted bitmap tag in the 'cipso_v4_parsetag_rbm' routine, it sets the security attribute to indicate that the category bitmap is present, even if it has not been allocated. This issue leads to a NULL pointer dereference issue while importing the same category bitmap into SELinux. This flaw allows a remote network user to crash the system kernel, resulting in a denial of service.

CVSS3: 5.9
1%
Низкий
около 5 лет назад
nvd логотип
CVE-2020-10711

A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's category bitmap into the SELinux extensible bitmap via the' ebitmap_netlbl_import' routine. While processing the CIPSO restricted bitmap tag in the 'cipso_v4_parsetag_rbm' routine, it sets the security attribute to indicate that the category bitmap is present, even if it has not been allocated. This issue leads to a NULL pointer dereference issue while importing the same category bitmap into SELinux. This flaw allows a remote network user to crash the system kernel, resulting in a denial of service.

CVSS3: 5.9
1%
Низкий
около 5 лет назад
msrc логотип
CVSS3: 5.9
1%
Низкий
больше 4 лет назад
debian логотип
CVE-2020-10711

A NULL pointer dereference flaw was found in the Linux kernel's SELinu ...

CVSS3: 5.9
1%
Низкий
около 5 лет назад

Уязвимостей на страницу