CVE-2020-27194
Summary
| CVE | CVE-2020-27194 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-10-16 21:15:00 UTC |
| Updated | 2022-06-28 14:11:00 UTC |
| Description | An issue was discovered in the Linux kernel before 5.8.15. scalar32_min_max_or in kernel/bpf/verifier.c mishandles bounds tracking during use of 64-bit values, aka CID-5b9fbeb75b6a. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.8.15 |
MISC |
cdn.kernel.org |
Release Notes, Vendor Advisory |
| bpf: Fix scalar32_min_max_or bounds tracking · torvalds/linux@5b9fbeb · GitHub |
MISC |
github.com |
Patch, Third Party Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 900040 CBL-Mariner Linux Security Update for kernel 5.4.91
- 903346 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (3485)
- 906018 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (3485-1)