Tracker / CVE-2020-36385
CVE-2020-36385
High 7.8
An issue was discovered in the Linux kernel before 5.10. drivers/infiniband/core/ucma.c has a use-after-free because the ctx is reached via the ctx_list in some ucma_migrate_id situations where ucma_close is called, aka CID-f5449e74802c.
Affected products and versions
| linux | linux_kernel · … → 5.10 |
|---|---|
| netapp | h300e_firmware |
| netapp | h300s_firmware |
| netapp | h410c_firmware |
| netapp | h410s_firmware |
| netapp | h500e_firmware |
| netapp | h500s_firmware |
| netapp | h700e_firmware |
| netapp | h700s_firmware |
| starwindsoftware | starwind_san_\&_nas |
| starwindsoftware | starwind_virtual_san |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.