Out-of-bounds read in Linux kernel - CVE-2020-28097
Published: January 6, 2023
Vulnerability details
The vulnerability allows an attacker with physical access to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition in the Linux kernel’s implementation of the invert video code on VGA consoles. A local user with access to the VGA console can scroll the console, calling an ioctl TIOCL_SCROLLCONSOLE to crash the system, potentially reading random out-of-bound memory on the system.
Affected software
openEuler
kernel
kernel-devel
perf
kernel-debugsource
python2-perf
python3-perf-debuginfo
bpftool
python3-perf
bpftool-debuginfo
kernel-source
kernel-tools-devel
kernel-debuginfo
kernel-tools
perf-debuginfo
python2-perf-debuginfo
kernel-tools-debuginfo
How to mitigate CVE-2020-28097
kernel - update to 4.19.90-2107.4.0.0097
kernel-devel - update to 4.19.90-2107.4.0.0097
perf - update to 4.19.90-2107.4.0.0097
kernel-debugsource - update to 4.19.90-2107.4.0.0097
python2-perf - update to 4.19.90-2107.4.0.0097
python3-perf-debuginfo - update to 4.19.90-2107.4.0.0097
bpftool - update to 4.19.90-2107.4.0.0097
python3-perf - update to 4.19.90-2107.4.0.0097
bpftool-debuginfo - update to 4.19.90-2107.4.0.0097
kernel-source - update to 4.19.90-2107.4.0.0097
kernel-tools-devel - update to 4.19.90-2107.4.0.0097
kernel-debuginfo - update to 4.19.90-2107.4.0.0097
kernel-tools - update to 4.19.90-2107.4.0.0097
perf-debuginfo - update to 4.19.90-2107.4.0.0097
python2-perf-debuginfo - update to 4.19.90-2107.4.0.0097
kernel-tools-debuginfo - update to 4.19.90-2107.4.0.0097
External References
- https://github.com/torvalds/linux/commit/973c096f6a85e5b5f2a295126ba6928d9a6afd45
- https://seclists.org/oss-sec/2020/q3/176
- https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.8.10
- https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=973c096f6a85e5b5f2a295126ba6928d9a6afd45
- https://security.netapp.com/advisory/ntap-20210805-0001/