CVE-2020-35519
published 2021-05-06CVE-2020-35519: An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25.c in the Linux kernel version v5.12-rc5. A bounds check failure allows a…
PriorityP340high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.41%
33.1th percentile
An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25.c in the Linux kernel version v5.12-rc5. A bounds check failure allows a local attacker with a user account on the system to gain access to out-of-bounds memory, leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.9.15-1 (bookworm) | linux 5.9.15-1 (bookworm) |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 5.9.15-1 | 5.9.15-1 |
| linux | linux_kernel | >= 0 < 5.9.15-1 | 5.9.15-1 |
| linux | linux_kernel | >= 0 < 5.9.15-1 | 5.9.15-1 |
| linux | linux_kernel | >= 0 < 5.9.15-1 | 5.9.15-1 |
| linux | linux_kernel | >= 2.6.12 < 4.4.248 | 4.4.248 |
| linux | linux_kernel | >= 4.10 < 4.14.211 | 4.14.211 |
| linux | linux_kernel | >= 4.15 < 4.19.162 | 4.19.162 |
| linux | linux_kernel | >= 4.20 < 5.4.82 | 5.4.82 |
| linux | linux_kernel | >= 4.5 < 4.9.248 | 4.9.248 |
| linux | linux_kernel | >= 5.5 < 5.9.13 | 5.9.13 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:L/AC:L/Au:N/C:C/I:P/A:C
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: x25_bind out-of-bounds read
vendor_redhat·2021-03-17·CVSS 7.8
CVE-2020-35519 [HIGH] CWE-125 kernel: x25_bind out-of-bounds read
kernel: x25_bind out-of-bounds read
An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25.c in the Linux kernel version v5.12-rc5. A bounds check failure allows a local attacker with a user account on the system to gain access to out-of-bounds memory, leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25.c in the Linux kernel. A bounds check failure allows a local attacker with a user account on the system to gain access to out-of-bounds memory, leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is t
Debian
CVE-2020-35519: linux - An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x2...
vendor_debian·2020·CVSS 7.8
CVE-2020-35519 [HIGH] CVE-2020-35519: linux - An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x2...
An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25.c in the Linux kernel version v5.12-rc5. A bounds check failure allows a local attacker with a user account on the system to gain access to out-of-bounds memory, leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
Scope: local
bookworm: resolved (fixed in 5.9.15-1)
bullseye: resolved (fixed in 5.9.15-1)
forky: resolved (fixed in 5.9.15-1)
sid: resolved (fixed in 5.9.15-1)
trixie: resolved (fixed in 5.9.15-1)
GHSA
GHSA-7hgx-ff8c-4fpm: An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25
ghsa_unreviewed·2022-05-24
CVE-2020-35519 [HIGH] CWE-125 GHSA-7hgx-ff8c-4fpm: An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25
An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25.c in the Linux kernel version v5.12-rc5. A bounds check failure allows a local attacker with a user account on the system to gain access to out-of-bounds memory, leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
OSV
CVE-2020-35519: An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25
osv·2021-05-06·CVSS 7.8
CVE-2020-35519 [HIGH] CVE-2020-35519: An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25
An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25.c in the Linux kernel version v5.12-rc5. A bounds check failure allows a local attacker with a user account on the system to gain access to out-of-bounds memory, leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-05-06
Published