Null pointer dereference in Linux kernel - CVE-2020-15437
Published: November 23, 2020 / Updated: December 2, 2020
Linux kernel
Linux Foundation
Description
The vulnerability allows a local privileged user to perform a denial of service (DoS) attack.
The Linux kernel before version 5.8 is vulnerable to a NULL pointer dereference in drivers/tty/serial/8250/8250_core.c:serial8250_isa_init_ports() that allows local users to cause a denial of service by using the p->serial_in pointer which uninitialized.