imPC@ndo IT

Tracker / CVE-2020-26088

CVE-2020-26088

Medium 5.5

A missing CAP_NET_RAW check in NFC socket creation in net/nfc/rawsock.c in the Linux kernel before 5.8.2 could be used by local attackers to create raw sockets, bypassing security mechanisms, aka CID-26896f01467a.

Affected products and versions

canonical ubuntu_linux
debian debian_linux
linux linux_kernel · … → 5.8.2
opensuse leap

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References