CVE-2020-15780Missing Authorization in Kernel

Severity
6.7MEDIUMNVD
EPSS
0.7%
top 28.05%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 15
Latest updateMay 24

Description

An issue was discovered in drivers/acpi/acpi_configfs.c in the Linux kernel before 5.7.7. Injection of malicious ACPI tables via configfs could be used by attackers to bypass lockdown and secure boot restrictions, aka CID-75b0cea7bf30.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HExploitability: 0.8 | Impact: 5.9

Affected Packages3 packages

NVDlinux/linux_kernel< 5.7.7
Debianlinux/linux_kernel< 5.7.10-1+3
NVDopensuse/leap15.1, 15.2+1

Also affects: Ubuntu Linux 16.04, 18.04, 20.04

Patches

🔴Vulnerability Details

3
GHSA
GHSA-j334-hj6g-m96m: An issue was discovered in drivers/acpi/acpi_configfs2022-05-24
CVEList
CVE-2020-15780: An issue was discovered in drivers/acpi/acpi_configfs2020-07-15
OSV
CVE-2020-15780: An issue was discovered in drivers/acpi/acpi_configfs2020-07-15

📋Vendor Advisories

7
Ubuntu
linux kernel vulnerabilities2020-07-31
Ubuntu
Linux kernel vulnerabilities2020-07-27
Ubuntu
Linux kernel vulnerabilities2020-07-27
Ubuntu
Linux kernel vulnerabilities2020-07-27
Microsoft
An issue was discovered in drivers/acpi/acpi_configfs.c in the Linux kernel before 5.7.7. Injection of malicious ACPI tables via configfs could be used by attackers to bypass lockdown and secure boot 2020-07-14

💬Community

2
Bugzilla
CVE-2020-15780 kernel: injection of malicious ACPI tables via configfs can be used to bypass lockdown and secure boot restrictions [fedora-all]2020-07-16
Bugzilla
CVE-2020-15780 kernel: lockdown: bypass through ACPI write via acpi_configfs2020-07-01
CVE-2020-15780 — Missing Authorization in Linux Kernel | cvebase