CVE-2020-36785
published 2024-02-28CVE-2020-36785: In the Linux kernel, the following vulnerability has been resolved: media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs() The "s3a_buf" is freed…
PriorityP337high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.22%
13.2th percentile
In the Linux kernel, the following vulnerability has been resolved:
media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs()
The "s3a_buf" is freed along with all the other items on the
"asd->s3a_stats" list. It leads to a double free and a use after free.
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.10.38-1 (bookworm) | linux 5.10.38-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | — | — |
| linux | linux | >= a49d25364dfb9f8a64037488a39ab1f56c5fa419 < 51b8dc5163d2ff2bf04019f8bf7e3bd0e75bb654 | 51b8dc5163d2ff2bf04019f8bf7e3bd0e75bb654 |
| linux | linux | >= ad85094b293e40e7a2f831b0311a389d952ebd5e < d218c7a0284f6b92a7b82d2e19706e18663b4193 | d218c7a0284f6b92a7b82d2e19706e18663b4193 |
| linux | linux | >= ad85094b293e40e7a2f831b0311a389d952ebd5e < 801c1d505894008c888bc71d08d5cff5d87f8aba | 801c1d505894008c888bc71d08d5cff5d87f8aba |
| linux | linux | >= ad85094b293e40e7a2f831b0311a389d952ebd5e < 8267ccd7b9df7ab682043507dd682fe0621cf045 | 8267ccd7b9df7ab682043507dd682fe0621cf045 |
| linux | linux | >= ad85094b293e40e7a2f831b0311a389d952ebd5e < ba11bbf303fafb33989e95473e409f6ab412b18d | ba11bbf303fafb33989e95473e409f6ab412b18d |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 0 < 5.10.38-1 | 5.10.38-1 |
| linux | linux_kernel | >= 5.11 < 5.11.21 | 5.11.21 |
| linux | linux_kernel | >= 5.12 < 5.12.4 | 5.12.4 |
| linux | linux_kernel | >= 5.8 < 5.10.37 | 5.10.37 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs()
vendor_redhat·2024-02-28·CVSS 7.8
CVE-2020-36785 [HIGH] CWE-416 kernel: media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs()
kernel: media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs()
In the Linux kernel, the following vulnerability has been resolved:
media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs()
The "s3a_buf" is freed along with all the other items on the
"asd->s3a_stats" list. It leads to a double free and a use after free.
Package: kernel (Red Hat Enterprise Linux 6) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel-rt (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterprise Linux 9) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 9) - Not affe
Debian
CVE-2020-36785: linux - In the Linux kernel, the following vulnerability has been resolved: media: atom...
vendor_debian·2020·CVSS 7.8
CVE-2020-36785 [HIGH] CVE-2020-36785: linux - In the Linux kernel, the following vulnerability has been resolved: media: atom...
In the Linux kernel, the following vulnerability has been resolved: media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs() The "s3a_buf" is freed along with all the other items on the "asd->s3a_stats" list. It leads to a double free and a use after free.
Scope: local
bookworm: resolved (fixed in 5.10.38-1)
bullseye: resolved (fixed in 5.10.38-1)
forky: resolved (fixed in 5.10.38-1)
sid: resolved (fixed in 5.10.38-1)
trixie: resolved (fixed in 5.10.38-1)
OSV
CVE-2020-36785: In the Linux kernel, the following vulnerability has been resolved: media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs() The "s3a_buf"
osv·2024-02-28·CVSS 7.8
CVE-2020-36785 [HIGH] CVE-2020-36785: In the Linux kernel, the following vulnerability has been resolved: media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs() The "s3a_buf"
In the Linux kernel, the following vulnerability has been resolved: media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs() The "s3a_buf" is freed along with all the other items on the "asd->s3a_stats" list. It leads to a double free and a use after free.
GHSA
GHSA-7ww5-chp8-5mwj: In the Linux kernel, the following vulnerability has been resolved:
media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs()
The "s3a_buf
ghsa_unreviewed·2024-02-28
CVE-2020-36785 [HIGH] CWE-415 GHSA-7ww5-chp8-5mwj: In the Linux kernel, the following vulnerability has been resolved:
media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs()
The "s3a_buf
In the Linux kernel, the following vulnerability has been resolved:
media: atomisp: Fix use after free in atomisp_alloc_css_stat_bufs()
The "s3a_buf" is freed along with all the other items on the
"asd->s3a_stats" list. It leads to a double free and a use after free.
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/51b8dc5163d2ff2bf04019f8bf7e3bd0e75bb654https://git.kernel.org/stable/c/801c1d505894008c888bc71d08d5cff5d87f8abahttps://git.kernel.org/stable/c/8267ccd7b9df7ab682043507dd682fe0621cf045https://git.kernel.org/stable/c/ba11bbf303fafb33989e95473e409f6ab412b18dhttps://git.kernel.org/stable/c/d218c7a0284f6b92a7b82d2e19706e18663b4193https://git.kernel.org/stable/c/801c1d505894008c888bc71d08d5cff5d87f8abahttps://git.kernel.org/stable/c/8267ccd7b9df7ab682043507dd682fe0621cf045https://git.kernel.org/stable/c/ba11bbf303fafb33989e95473e409f6ab412b18dhttps://git.kernel.org/stable/c/d218c7a0284f6b92a7b82d2e19706e18663b4193
2024-02-28
Published