Lucene search

K
cvelistMitreCVELIST:CVE-2020-11494
HistoryApr 02, 2020 - 8:14 p.m.

CVE-2020-11494

2020-04-0220:14:01
mitre
www.cve.org

5.6 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

18.2%

An issue was discovered in slc_bump in drivers/net/can/slcan.c in the Linux kernel 3.16 through 5.6.2. It allows attackers to read uninitialized can_frame data, potentially containing sensitive information from kernel stack memory, if the configuration lacks CONFIG_INIT_STACK_ALL, aka CID-b9258a2cece4.