Lucene search

K
f5F5F5:K62532228
HistoryFeb 08, 2021 - 12:00 a.m.

K62532228 : Linux kernel CVE-2020-10769

2021-02-0800:00:00
my.f5.com
47
linux kernel
buffer over-read
ipsec cryptographic

AI Score

5.6

Confidence

High

EPSS

0

Percentile

5.1%

Security Advisory Description

A buffer over-read flaw was found in RH kernel versions before 5.0 in crypto_authenc_extractkeys in crypto/authenc.c in the IPsec Cryptographic algorithm’s module, authenc. When a payload longer than 4 bytes, and is not following 4-byte alignment boundary guidelines, it causes a buffer over-read threat, leading to a system crash. This flaw allows a local attacker with user privileges to cause a denial of service. (CVE-2020-10769)

Impact

This vulnerability allows a local attacker with user privileges to cause a denial-of-service (DoS) attack.