4.7 Medium
CVSS2
Attack Vector
LOCAL
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
COMPLETE
AV:L/AC:M/Au:N/C:N/I:N/A:C
4.1 Medium
CVSS3
Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
HIGH
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H
0.0004 Low
EPSS
Percentile
5.1%
The __mptctl_ioctl function in drivers/message/fusion/mptctl.c in the Linux
kernel before 5.4.14 allows local users to hold an incorrect lock during
the ioctl operation and trigger a race condition, i.e., a “double fetch”
vulnerability, aka CID-28d76df18f0a. NOTE: the vendor states “The security
impact of this bug is not as bad as it could have been because these
operations are all privileged and root already has enormous destructive
power.”
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
ubuntu | 18.04 | noarch | linux | < 4.15.0-91.92 | UNKNOWN |
ubuntu | 19.10 | noarch | linux | < 5.3.0-42.34 | UNKNOWN |
ubuntu | 16.04 | noarch | linux | < 4.4.0-174.204 | UNKNOWN |
ubuntu | 18.04 | noarch | linux-aws | < 4.15.0-1063.67 | UNKNOWN |
ubuntu | 19.10 | noarch | linux-aws | < 5.3.0-1013.14 | UNKNOWN |
ubuntu | 14.04 | noarch | linux-aws | < 4.4.0-1062.66 | UNKNOWN |
ubuntu | 16.04 | noarch | linux-aws | < 4.4.0-1102.113 | UNKNOWN |
ubuntu | 16.04 | noarch | linux-aws-hwe | < 4.15.0-1063.67~16.04.1 | UNKNOWN |
ubuntu | 19.10 | noarch | linux-azure | < 5.3.0-1016.17 | UNKNOWN |
ubuntu | 14.04 | noarch | linux-azure | < 4.15.0-1074.79~14.04.1 | UNKNOWN |
cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.4.14
git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=28d76df18f0ad5bcf5fa48510b225f0ed262a99b
git.kernel.org/linus/28d76df18f0ad5bcf5fa48510b225f0ed262a99b (5.5-rc7)
github.com/torvalds/linux/commit/28d76df18f0ad5bcf5fa48510b225f0ed262a99b
launchpad.net/bugs/cve/CVE-2020-12652
nvd.nist.gov/vuln/detail/CVE-2020-12652
security-tracker.debian.org/tracker/CVE-2020-12652
www.cve.org/CVERecord?id=CVE-2020-12652
4.7 Medium
CVSS2
Attack Vector
LOCAL
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
COMPLETE
AV:L/AC:M/Au:N/C:N/I:N/A:C
4.1 Medium
CVSS3
Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
HIGH
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H
0.0004 Low
EPSS
Percentile
5.1%