imPC@ndo IT

Tracker / CVE-2020-29661

CVE-2020-29661

High 7.8

A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows a use-after-free attack against TIOCSPGRP, aka CID-54ffccbf053b.

Affected products and versions

broadcom fabric_operating_system
debian debian_linux
fedoraproject fedora
linux linux_kernel · 2.6.26 → 4.4.248
linux linux_kernel · 4.10 → 4.14.212
linux linux_kernel · 4.15 → 4.19.163
linux linux_kernel · 4.20 → 5.4.83
linux linux_kernel · 4.5 → 4.9.248
linux linux_kernel · 5.5 → 5.9.14
netapp 8300_firmware
netapp 8700_firmware
netapp a400_firmware
netapp a700s_firmware
netapp active_iq_unified_manager
netapp h410c_firmware
netapp solidfire_baseboard_management_controller_firmware
oracle tekelec_platform_distribution · 7.4.0 → 7.7.1

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References