CVE-2020-29660

CVSS v3.1 4.4 (Medium)
44% Progress
CVSS v2.0 2.1 (Low)
21% Progress
EPSS 0.06 % (28th)
0.06% Progress
Affected Products 17
Advisories 42

A locking inconsistency issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_io.c and drivers/tty/tty_jobctrl.c may allow a read-after-free attack against TIOCGSID, aka CID-c8bcd9c5be24.

Weaknesses
CWE-416
Use After Free
CWE-667
Improper Locking
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2020-12-09 17:15:31
(3 years ago)
Updated Date
2023-11-07 03:21:33
(10 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel 5.9.13 and prior versions cpe:2.3:o:linux:linux_kernel <= 5.9.13

Configuration #2

    CPE23 From Up To
  Fedoraproject Fedora 32 cpe:2.3:o:fedoraproject:fedora:32
  Fedoraproject Fedora 33 cpe:2.3:o:fedoraproject:fedora:33

Configuration #3

    CPE23 From Up To
  Debian Linux 9.0 cpe:2.3:o:debian:debian_linux:9.0
  Debian Linux 10.0 cpe:2.3:o:debian:debian_linux:10.0

Configuration #4

    CPE23 From Up To
  Netapp Active Iq Unified Manager for Vmware Vsphere cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere

Configuration #5

    CPE23 From Up To
  Broadcom Fabric Operating System cpe:2.3:o:broadcom:fabric_operating_system:-

Configuration #6

AND
    CPE23 From Up To
OR  
  Netapp Solidfire Baseboard Management Controller Firmware cpe:2.3:o:netapp:solidfire_baseboard_management_controller_firmware:-
OR  
  Running on/with
  Netapp Solidfire Baseboard Management Controller cpe:2.3:h:netapp:solidfire_baseboard_management_controller:-

Configuration #7

AND
    CPE23 From Up To
OR  
  Netapp H410c Firmware cpe:2.3:o:netapp:h410c_firmware:-
OR  
  Running on/with
  Netapp H410c cpe:2.3:h:netapp:h410c:-

Configuration #8

AND
    CPE23 From Up To
OR  
  Netapp A700s Firmware cpe:2.3:o:netapp:a700s_firmware:-
OR  
  Running on/with
  Netapp A700s cpe:2.3:h:netapp:a700s:-

Configuration #9

AND
    CPE23 From Up To
OR  
  Netapp 8300 Firmware cpe:2.3:o:netapp:8300_firmware:-
OR  
  Running on/with
  Netapp 8300 cpe:2.3:h:netapp:8300:-

Configuration #10

AND
    CPE23 From Up To
OR  
  Netapp 8700 Firmware cpe:2.3:o:netapp:8700_firmware:-
OR  
  Running on/with
  Netapp 8700 cpe:2.3:h:netapp:8700:-

Configuration #11

AND
    CPE23 From Up To
OR  
  Netapp A400 Firmware cpe:2.3:o:netapp:a400_firmware:-
OR  
  Running on/with
  Netapp A400 cpe:2.3:h:netapp:a400:-
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...