Lucene search

K
redhatcveRedhat.comRH:CVE-2020-10942
HistoryMar 26, 2020 - 7:44 p.m.

CVE-2020-10942

2020-03-2619:44:38
redhat.com
access.redhat.com
19

0.001 Low

EPSS

Percentile

26.9%

A stack buffer overflow issue was found in the get_raw_socket() routine of the Host kernel accelerator for virtio net (vhost-net) driver. It could occur while doing an ictol(VHOST_NET_SET_BACKEND) call, and retrieving socket name in a kernel stack variable via get_raw_socket(). A user able to perform ioctl(2) calls on the ‘/dev/vhost-net’ device may use this flaw to crash the kernel resulting in DoS issue.