Lucene search

K
alpinelinuxAlpine Linux Development TeamALPINE:CVE-2020-6107
HistoryOct 15, 2020 - 3:15 p.m.

CVE-2020-6107

2020-10-1515:15:00
Alpine Linux Development Team
security.alpinelinux.org
14
information disclosure
f2fs-tools
filesystem
uninitialized read
vulnerability
attacker
malicious file

EPSS

0.001

Percentile

39.9%

An exploitable information disclosure vulnerability exists in the dev_read functionality of F2fs-Tools F2fs.Fsck 1.13. A specially crafted f2fs filesystem can cause an uninitialized read resulting in an information disclosure. An attacker can provide a malicious file to trigger this vulnerability.

OSVersionArchitecturePackageVersionFilename
Alpine3.12-mainnoarchf2fs-tools= 1.13.0-r0UNKNOWN
Alpine3.11-mainnoarchf2fs-tools= 1.13.0-r0UNKNOWN
Alpine3.10-mainnoarchf2fs-tools= 1.12.0-r0UNKNOWN

EPSS

0.001

Percentile

39.9%