Skip to content

kernel CVE-2020-28974

Moderate
etungsten published GHSA-x23j-hwp3-mh83 Jan 15, 2021

Package

kernel (bottlerocket)

Affected versions

< 1.0.5

Patched versions

1.0.5

Description

An out-of-bounds (OOB) SLAB memory access flaw was found in the Linux kernel's fbcon driver module. A bounds check failure allows a local attacker with special user privileges to gain access to out-of-bounds memory, leading to a system crash or leaking of internal kernel information.

Severity

Moderate

CVE ID

CVE-2020-28974

Weaknesses

No CWEs