CVE-2020-11494
CVSS v3.1
4.4 (Medium)
CVSS v2.0
2.1 (Low)
EPSS
0.05 % (19th)
Affected Products
4
Advisories
23
An issue was discovered in slc_bump in drivers/net/can/slcan.c in the Linux kernel 3.16 through 5.6.2. It allows attackers to read uninitialized can_frame data, potentially containing sensitive information from kernel stack memory, if the configuration lacks CONFIG_INIT_STACK_ALL, aka CID-b9258a2cece4.
- CVE Status
- PUBLISHED
- CNA
- MITRE
- Published Date
-
2020-04-02 21:15:13
(4 years ago) - Updated Date
-
2022-04-29 13:26:22
(2 years ago)
Affected Products
Loading...
Loading...
Configuration #1
|
Configuration #2
|
Configuration #3
|
Configuration #4
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...