CVE-2020-14304
Summary
| CVE | CVE-2020-14304 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-09-15 20:15:00 UTC |
| Updated | 2023-02-12 22:15:00 UTC |
| Description | A memory disclosure flaw was found in the Linux kernel's ethernet drivers, in the way it read data from the EEPROM of the device. This flaw allows a local user to read uninitialized values from the kernel memory. The highest threat from this vulnerability is to confidentiality. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| 1847539 – (CVE-2020-14304) CVE-2020-14304 kernel: ethtool when reading eeprom of device could lead to memory leak |
CONFIRM |
bugzilla.redhat.com |
Issue Tracking, Third Party Advisory |
| #960702 - ethtool -m values change when output is redirected - Debian Bug report logs |
MISC |
bugs.debian.org |
Issue Tracking, Third Party Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 159332 Oracle Enterprise Linux Security Update for Unbreakable Enterprise kernel (ELSA-2021-9395)
- 159338 Oracle Enterprise Linux Security Update for Unbreakable Enterprise kernel (ELSA-2021-9404)
- 159339 Oracle Enterprise Linux Security Update for Unbreakable Enterprise kernel-container (ELSA-2021-9406)
- 159340 Oracle Enterprise Linux Security Update for Unbreakable Enterprise kernel (ELSA-2021-9407)
- 159341 Oracle Enterprise Linux Security Update for Unbreakable Enterprise kernel-container (ELSA-2021-9410)
- 390220 Oracle Managed Virtualization (VM) Server for x86 Security Update for kernel (OVMSA-2021-0025)