CVE-2020-27815
Summary
| CVE | CVE-2020-27815 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-05-26 13:15:00 UTC |
| Updated | 2023-07-28 19:32:00 UTC |
| Description | A flaw was found in the JFS filesystem code in the Linux Kernel which allows a local attacker with the ability to set extended attributes to panic the system, causing memory corruption or escalating privileges. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] [DLA 2557-1] linux-4.19 security update |
MLIST |
lists.debian.org |
|
| [SECURITY] [DLA 2586-1] linux security update |
MLIST |
lists.debian.org |
|
| oss-security - CVE-2020-27815 Linux kernel: jfs: array-index-out-of-bounds
in dbAdjTree |
MISC |
www.openwall.com |
|
| Debian -- Security Information -- DSA-4843-1 linux |
DEBIAN |
www.debian.org |
|
| oss-security - Re: CVE-2020-27815 Linux kernel: jfs:
array-index-out-of-bounds in dbAdjTree |
MISC |
www.openwall.com |
|
| oss-security - CVE-2020-27815 Linux kernel: jfs: array-index-out-of-bounds
in dbAdjTree |
MLIST |
www.openwall.com |
|
| oss-security - Re: CVE-2020-27815 Linux kernel: jfs:
array-index-out-of-bounds in dbAdjTree |
MLIST |
www.openwall.com |
|
| Invalid Bug ID |
MISC |
bugzilla.redhat.com |
|
| Invalid Bug ID |
MISC |
bugzilla.redhat.com |
|
| kernel/git/torvalds/linux.git - Linux kernel source tree |
MISC |
git.kernel.org |
|
| CVE-2020-27815 Linux Kernel Vulnerability in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| oss-security - Re: CVE-2020-27815 Linux kernel: jfs:
array-index-out-of-bounds in dbAdjTree |
MISC |
www.openwall.com |
|
| oss-security - CVE-2020-27815 Linux kernel: jfs: array-index-out-of-bounds
in dbAdjTree |
MISC |
www.openwall.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 174896 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2021:1177-1)
- 174897 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2021:1175-1)
- 174916 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2021:1210-1)
- 174917 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2021:1211-1)
- 174919 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2021:1238-1)
- 353100 Amazon Linux Security Advisory for kernel : ALAC2012-2021-024
- 353101 Amazon Linux Security Advisory for kmod-mlx5 : ALAC2012-2021-025
- 353102 Amazon Linux Security Advisory for kmod-sfc : ALAC2012-2021-026
- 353132 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.4-2022-019
- 6140053 AWS Bottlerocket Security Update for kernel (GHSA-4vjm-vp49-g4rx)
- 670269 EulerOS Security Update for kernel (EulerOS-SA-2021-1808)
- 670463 EulerOS Security Update for kernel (EulerOS-SA-2021-2221)
- 670634 EulerOS Security Update for kernel (EulerOS-SA-2021-2392)
- 750004 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2021:1573-1)
- 750006 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2021:1596-1)
- 750015 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2021:1624-1)
- 750199 OpenSUSE Security Update for the Linux Kernel (openSUSE-SU-2021:0758-1)
- 750276 OpenSUSE Security Update for the Linux Kernel (openSUSE-SU-2021:0532-1)
- 750650 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2021:1975-1)
- 750652 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2021:1977-1)
- 750762 OpenSUSE Security Update for the Linux Kernel (openSUSE-SU-2021:1977-1)
- 750766 OpenSUSE Security Update for the Linux Kernel (openSUSE-SU-2021:1975-1)
- 907359 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (31148)
- 907564 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (31148-1)