cbcvebase.
CVE-2020-29370
published 2020-11-28

CVE-2020-29370: An issue was discovered in kmem_cache_alloc_bulk in mm/slub.c in the Linux kernel before 5.5.11. The slowpath lacks the required TID increment, aka…

PriorityP429high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
EPSS
0.61%
45.7th percentile
An issue was discovered in kmem_cache_alloc_bulk in mm/slub.c in the Linux kernel before 5.5.11. The slowpath lacks the required TID increment, aka CID-fd4d9c7d0c71.

Affected

7 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.5.13-1 (bookworm)linux 5.5.13-1 (bookworm)
linuxlinux_kernel< 5.5.115.5.11
linuxlinux_kernel>= 0 < 5.5.13-15.5.13-1
linuxlinux_kernel>= 0 < 5.5.13-15.5.13-1
linuxlinux_kernel>= 0 < 5.5.13-15.5.13-1
linuxlinux_kernel>= 0 < 5.5.13-15.5.13-1
msrccm1_kernel_5.4.91-1_on_cbl_mariner_1.0

CVSS provenance

nvdv3.17.0HIGHCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.4MEDIUMAV:L/AC:M/Au:N/C:P/I:P/A:P
osv7.0HIGH
vendor_debian7.0HIGH
vendor_msrc7.0HIGH
vendor_redhat7.0HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.