CVE-2020-0110
published 2020-05-14CVE-2020-0110: In psi_write of psi.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no…
PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.18%
8.1th percentile
In psi_write of psi.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-148159562References: Upstream kernel
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.5.13-1 (bookworm) | linux 5.5.13-1 (bookworm) |
| android | — | — | |
| intel | jhl6240_firmware | < 1.41.1054.0 | 1.41.1054.0 |
| intel | jhl6340_firmware | < 1.41.1054.0 | 1.41.1054.0 |
| intel | jhl6540_firmware | < 1.41.1054.0 | 1.41.1054.0 |
| intel | jhl7340_firmware | < 1.41.1054.0 | 1.41.1054.0 |
| intel | jhl7440_firmware | < 1.41.1054.0 | 1.41.1054.0 |
| intel | jhl7540_firmware | < 1.41.1054.0 | 1.41.1054.0 |
| intel | jhl8440_firmware | < 1.41.1054.0 | 1.41.1054.0 |
| intel | jhl8540_firmware | < 1.41.1054.0 | 1.41.1054.0 |
| linux | linux_kernel | >= 0 < 5.5.13-1 | 5.5.13-1 |
| linux | linux_kernel | >= 0 < 5.5.13-1 | 5.5.13-1 |
| linux | linux_kernel | >= 0 < 5.5.13-1 | 5.5.13-1 |
| linux | linux_kernel | >= 0 < 5.5.13-1 | 5.5.13-1 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: out of bound write when writing 0 bytes to PSI files which could result in local privilege escalation
vendor_redhat·2020-05-07·CVSS 7.8
CVE-2020-0110 [HIGH] CWE-787 kernel: out of bound write when writing 0 bytes to PSI files which could result in local privilege escalation
kernel: out of bound write when writing 0 bytes to PSI files which could result in local privilege escalation
In psi_write of psi.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-148159562References: Upstream kernel
A flaw was found in the Pressure stall information subsystem. This flaw allows a local attacker with the ability to write to root-owned files to corrupt kernel stack memory.
Mitigation: As the attacker must have the ability to write to these files, a possible mitigation would be to reduce the access that users and their processes would have to the files u
Android
CVE-2020-0110: Kernel Scheduler
vendor_android·2020-05-01·CVSS 7.8
CVE-2020-0110 [HIGH] CVE-2020-0110: Kernel Scheduler
Android Security Bulletin 2020-05-01
CVE: CVE-2020-0110
Severity: HIGH
Type: EoP
Component: Kernel Scheduler
References: A-148159562
Upstream
kernel
Debian
CVE-2020-0110: linux - In psi_write of psi.c, there is a possible out of bounds write due to a missing ...
vendor_debian·2020·CVSS 7.8
CVE-2020-0110 [HIGH] CVE-2020-0110: linux - In psi_write of psi.c, there is a possible out of bounds write due to a missing ...
In psi_write of psi.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-148159562References: Upstream kernel
Scope: local
bookworm: resolved (fixed in 5.5.13-1)
bullseye: resolved (fixed in 5.5.13-1)
forky: resolved (fixed in 5.5.13-1)
sid: resolved (fixed in 5.5.13-1)
trixie: resolved (fixed in 5.5.13-1)
GHSA
GHSA-849w-wv4j-9jqv: In psi_write of psi
ghsa_unreviewed·2022-05-24
CVE-2020-0110 [MEDIUM] CWE-787 GHSA-849w-wv4j-9jqv: In psi_write of psi
In psi_write of psi.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-148159562References: Upstream kernel
OSV
CVE-2020-0110: In psi_write of psi
osv·2020-05-14·CVSS 7.8
CVE-2020-0110 [HIGH] CVE-2020-0110: In psi_write of psi
In psi_write of psi.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-148159562References: Upstream kernel
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-0110 kernel: out of boudns write when writing 0 bytes to /proc/pressure/ PSI files
bugzilla·2020-05-20·CVSS 7.8
CVE-2020-0110 [HIGH] CVE-2020-0110 kernel: out of boudns write when writing 0 bytes to /proc/pressure/ PSI files
CVE-2020-0110 kernel: out of boudns write when writing 0 bytes to /proc/pressure/ PSI files
A flaw was found in the Linux kernels implementation of Pressure Stall Information reporting and notification in files in the /proc/filesystem
Issuing write() with count parameter set to 0 on any file under /proc/pressure/ will cause an OOB write to a buffer allocated in kernel. This could allow for memory corruption or other unspecified consequences.
Discussion:
External References:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=6fcca0fa48118e6d63733eb4644c6cd880c15b8f
---
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 1837791]
---
*** This bug has been marked as a duplicate of bug 1836936 ***
Bugzilla
CVE-2020-0110 kernel: out of bound write when writing 0 bytes to PSI files which could result in local privilege escalation
bugzilla·2020-05-18·CVSS 7.8
CVE-2020-0110 [HIGH] CVE-2020-0110 kernel: out of bound write when writing 0 bytes to PSI files which could result in local privilege escalation
CVE-2020-0110 kernel: out of bound write when writing 0 bytes to PSI files which could result in local privilege escalation
In psi_write of psi.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
References:
https://source.android.com/security/bulletin/2020-05-01
Upstream Commit:
https://git.kernel.org/linus/6fcca0fa48118e6d63733eb4644c6cd880c15b8f
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 1836943]
---
This was fixed for Fedora with the 5.5.7 stable kernel updates.
---
*** Bug 1837790 has been marked as a duplicate of this bug. ***
---
Mitigation:
As the attacker must ha
Bugzilla
CVE-2020-0110 kernel: out of bound write when writing 0 bytes to PSI files [fedora-all]
bugzilla·2020-05-18·CVSS 7.8
CVE-2020-0110 [HIGH] CVE-2020-0110 kernel: out of bound write when writing 0 bytes to PSI files [fedora-all]
CVE-2020-0110 kernel: out of bound write when writing 0 bytes to PSI files [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supporte
2020-05-14
Published