#VU69431 Improper Privilege Management in Linux kernel - CVE-2020-35513
Published: November 19, 2022
Linux kernel
Linux Foundation
Description
The vulnerability allows a local user to perform a denial of service attack.
The vulnerability exists due to improper privilege management in the Linux kernel NFS (network file system) functionality in the way user create and delete object using NFSv4.2 or newer if both simultaneously accessing the NFS by the other process that is not using new NFSv4.2. A local user can trigger the vulnerability to starve the resources and perform a denial of service attack.