Количество 69
Количество 69
ELSA-2021-9025
ELSA-2021-9025: Unbreakable Enterprise kernel-container security update (IMPORTANT)
ELSA-2021-9024
ELSA-2021-9024: Unbreakable Enterprise kernel-container security update (IMPORTANT)
ELSA-2021-9023
ELSA-2021-9023: Unbreakable Enterprise kernel security update (IMPORTANT)
ELSA-2021-9008
ELSA-2021-9008: Unbreakable Enterprise kernel-container security update (IMPORTANT)
ELSA-2021-9005
ELSA-2021-9005: Unbreakable Enterprise kernel security update (IMPORTANT)
ELSA-2021-9009
ELSA-2021-9009: Unbreakable Enterprise kernel security update (IMPORTANT)
ELSA-2021-9038
ELSA-2021-9038: Unbreakable Enterprise kernel-container security update (IMPORTANT)
ELSA-2021-9037
ELSA-2021-9037: Unbreakable Enterprise kernel security update (IMPORTANT)
ELSA-2021-9007
ELSA-2021-9007: Unbreakable Enterprise kernel-container security update (IMPORTANT)
ELSA-2021-9006
ELSA-2021-9006: Unbreakable Enterprise kernel security update (IMPORTANT)

SUSE-SU-2021:0348-1
Security update for the Linux Kernel

SUSE-SU-2021:0433-1
Security update for the Linux Kernel

SUSE-SU-2021:0347-1
Security update for the Linux Kernel

openSUSE-SU-2021:0075-1
Security update for the Linux Kernel

SUSE-SU-2021:0434-1
Security update for the Linux Kernel

SUSE-SU-2021:0438-1
Security update for the Linux Kernel

CVE-2020-28374
In drivers/target/target_core_xcopy.c in the Linux kernel before 5.10.7, insufficient identifier checking in the LIO SCSI target code can be used by remote attackers to read or write files via directory traversal in an XCOPY request, aka CID-2896c93811e3. For example, an attack can occur over a network if the attacker has access to one iSCSI LUN. The attacker gains control over file access because I/O operations are proxied via an attacker-selected backstore.

CVE-2020-28374
In drivers/target/target_core_xcopy.c in the Linux kernel before 5.10.7, insufficient identifier checking in the LIO SCSI target code can be used by remote attackers to read or write files via directory traversal in an XCOPY request, aka CID-2896c93811e3. For example, an attack can occur over a network if the attacker has access to one iSCSI LUN. The attacker gains control over file access because I/O operations are proxied via an attacker-selected backstore.

CVE-2020-28374
In drivers/target/target_core_xcopy.c in the Linux kernel before 5.10.7, insufficient identifier checking in the LIO SCSI target code can be used by remote attackers to read or write files via directory traversal in an XCOPY request, aka CID-2896c93811e3. For example, an attack can occur over a network if the attacker has access to one iSCSI LUN. The attacker gains control over file access because I/O operations are proxied via an attacker-selected backstore.

CVE-2020-28374
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
ELSA-2021-9025 ELSA-2021-9025: Unbreakable Enterprise kernel-container security update (IMPORTANT) | больше 4 лет назад | |||
ELSA-2021-9024 ELSA-2021-9024: Unbreakable Enterprise kernel-container security update (IMPORTANT) | больше 4 лет назад | |||
ELSA-2021-9023 ELSA-2021-9023: Unbreakable Enterprise kernel security update (IMPORTANT) | больше 4 лет назад | |||
ELSA-2021-9008 ELSA-2021-9008: Unbreakable Enterprise kernel-container security update (IMPORTANT) | больше 4 лет назад | |||
ELSA-2021-9005 ELSA-2021-9005: Unbreakable Enterprise kernel security update (IMPORTANT) | больше 4 лет назад | |||
ELSA-2021-9009 ELSA-2021-9009: Unbreakable Enterprise kernel security update (IMPORTANT) | больше 4 лет назад | |||
ELSA-2021-9038 ELSA-2021-9038: Unbreakable Enterprise kernel-container security update (IMPORTANT) | больше 4 лет назад | |||
ELSA-2021-9037 ELSA-2021-9037: Unbreakable Enterprise kernel security update (IMPORTANT) | больше 4 лет назад | |||
ELSA-2021-9007 ELSA-2021-9007: Unbreakable Enterprise kernel-container security update (IMPORTANT) | больше 4 лет назад | |||
ELSA-2021-9006 ELSA-2021-9006: Unbreakable Enterprise kernel security update (IMPORTANT) | больше 4 лет назад | |||
![]() | SUSE-SU-2021:0348-1 Security update for the Linux Kernel | больше 4 лет назад | ||
![]() | SUSE-SU-2021:0433-1 Security update for the Linux Kernel | больше 4 лет назад | ||
![]() | SUSE-SU-2021:0347-1 Security update for the Linux Kernel | больше 4 лет назад | ||
![]() | openSUSE-SU-2021:0075-1 Security update for the Linux Kernel | больше 4 лет назад | ||
![]() | SUSE-SU-2021:0434-1 Security update for the Linux Kernel | больше 4 лет назад | ||
![]() | SUSE-SU-2021:0438-1 Security update for the Linux Kernel | больше 4 лет назад | ||
![]() | CVE-2020-28374 In drivers/target/target_core_xcopy.c in the Linux kernel before 5.10.7, insufficient identifier checking in the LIO SCSI target code can be used by remote attackers to read or write files via directory traversal in an XCOPY request, aka CID-2896c93811e3. For example, an attack can occur over a network if the attacker has access to one iSCSI LUN. The attacker gains control over file access because I/O operations are proxied via an attacker-selected backstore. | CVSS3: 8.1 | 0% Низкий | больше 4 лет назад |
![]() | CVE-2020-28374 In drivers/target/target_core_xcopy.c in the Linux kernel before 5.10.7, insufficient identifier checking in the LIO SCSI target code can be used by remote attackers to read or write files via directory traversal in an XCOPY request, aka CID-2896c93811e3. For example, an attack can occur over a network if the attacker has access to one iSCSI LUN. The attacker gains control over file access because I/O operations are proxied via an attacker-selected backstore. | CVSS3: 8.1 | 0% Низкий | больше 4 лет назад |
![]() | CVE-2020-28374 In drivers/target/target_core_xcopy.c in the Linux kernel before 5.10.7, insufficient identifier checking in the LIO SCSI target code can be used by remote attackers to read or write files via directory traversal in an XCOPY request, aka CID-2896c93811e3. For example, an attack can occur over a network if the attacker has access to one iSCSI LUN. The attacker gains control over file access because I/O operations are proxied via an attacker-selected backstore. | CVSS3: 8.1 | 0% Низкий | больше 4 лет назад |
![]() | CVSS3: 8.1 | 0% Низкий | больше 4 лет назад |
Уязвимостей на страницу