Tracker / CVE-2020-35508
CVE-2020-35508
Medium 4.5
A flaw possibility of race condition and incorrect initialization of the process id was found in the Linux kernel child/parent process identification handling while filtering signal handlers. A local attacker is able to abuse this flaw to bypass checks to send any signal to a privileged process.
Affected products and versions
| linux | linux_kernel |
|---|---|
| linux | linux_kernel · … → 5.12 |
| netapp | a700s_firmware |
| netapp | aff_a400_firmware |
| netapp | brocade_fabric_operating_system_firmware |
| netapp | fas8300_firmware |
| netapp | fas8700_firmware |
| netapp | h300e_firmware |
| netapp | h300s_firmware |
| netapp | h410c_firmware |
| netapp | h410s_firmware |
| netapp | h500e_firmware |
| netapp | h500s_firmware |
| netapp | h610c_firmware |
| netapp | h610s_firmware |
| netapp | h615c_firmware |
| netapp | h700e_firmware |
| netapp | h700s_firmware |
| redhat | enterprise_linux |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.