Lucene search

K
osvGoogleOSV:USN-4580-1
HistoryOct 14, 2020 - 2:24 a.m.

linux, linux-lts-trusty vulnerability

2020-10-1402:24:44
Google
osv.dev
16
hadar manor
dccp protocol
linux kernel
use-after-free
denial of service
arbitrary code
software vulnerability

AI Score

7.8

Confidence

High

EPSS

0

Percentile

5.1%

Hadar Manor discovered that the DCCP protocol implementation in the Linux
kernel improperly handled socket reuse, leading to a use-after-free
vulnerability. A local attacker could use this to cause a denial of service
(system crash) or possibly execute arbitrary code.