Lucene search

K
redhatcveRedhat.comRH:CVE-2020-10702
HistoryApr 03, 2020 - 6:01 p.m.

CVE-2020-10702

2020-04-0318:01:25
redhat.com
access.redhat.com
16

0.0004 Low

EPSS

Percentile

5.1%

A flaw was found in QEMU in the implementation of the Pointer Authentication (PAuth) support for ARM. A general failure of the signature generation process caused every PAuth-enforced pointer to be signed with the same signature. A local attacker could obtain the signature of a protected pointer and abuse this flaw to bypass PAuth protection for all programs running on QEMU.