SB2022033034 - Input validation error in Linux kernel
Published: March 30, 2022
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Input validation error (CVE-ID: CVE-2020-35501)
The vulnerability allows a local privileged user to read and manipulate data.
A flaw was found in the Linux kernels implementation of audit rules, where a syscall can unexpectedly not be correctly not be logged by the audit subsystem
Remediation
Install update from vendor's website.