Lucene search

K
osvGoogleOSV:CVE-2020-24385
HistorySep 03, 2020 - 3:15 p.m.

CVE-2020-24385

2020-09-0315:15:11
Google
osv.dev
5

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.6%

In MidnightBSD before 1.2.6 and 1.3 before August 2020, and FreeBSD before 7, a NULL pointer dereference was found in the Linux emulation layer that allows attackers to crash the running kernel. During binary interaction, td->td_emuldata in sys/compat/linux/linux_emul.h is not getting initialized and returns NULL from em_find().

CPENameOperatorVersion
srceq1.2.3
srceq1.2.5
srceq1.2.2
srceq1.2.1
srceq1.2.4

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.6%

Related for OSV:CVE-2020-24385