cbcvebase.
CVE-2020-28974
published 2020-11-20

CVE-2020-28974: A slab-out-of-bounds read in fbcon in the Linux kernel before 5.9.7 could be used by local attackers to read privileged information or potentially crash the…

PriorityP416medium5CVSS 3.1
AVPACLPRHUINSUCLILAH
EPSS
0.51%
40.9th percentile
A slab-out-of-bounds read in fbcon in the Linux kernel before 5.9.7 could be used by local attackers to read privileged information or potentially crash the kernel, aka CID-3c4e0dff2095. This occurs because KD_FONT_OP_COPY in drivers/tty/vt/vt.c can be used for manipulations such as font height.

Affected

12 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 5.9.9-1 (bookworm)linux 5.9.9-1 (bookworm)
linuxlinux_kernel< 5.9.75.9.7
linuxlinux_kernel>= 0 < 5.9.9-15.9.9-1
linuxlinux_kernel>= 0 < 5.9.9-15.9.9-1
linuxlinux_kernel>= 0 < 5.9.9-15.9.9-1
linuxlinux_kernel>= 0 < 5.9.9-15.9.9-1
linuxlinux_kernel>= 0 < 4.4.0-198.2304.4.0-198.230
linuxlinux_kernel>= 0 < 4.15.0-129.1324.15.0-129.132
linuxlinux_kernel>= 0 < 5.4.0-59.655.4.0-59.65
msrccm1_kernel_5.4.91-1_on_cbl_mariner_1.0
paloaltopan-os

CVSS provenance

nvdv3.15.0MEDIUMCVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:H
nvdv2.06.1MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:C
osv8.2HIGH
vendor_ubuntu8.2HIGH
vendor_debian5.0MEDIUM
vendor_msrc5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.