CVE-2020-25668
A flaw was found in Linux Kernel because access to the global variable fg_console is not properly synchronized leading to a use after free in con_font_op.
02 / AFFECTED SOFTWARE
Affected packages
1 explicit affected versions
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
In vt_disallocate and related functions of vt_ioctl.c, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
A flaw was found in Linux Kernel because access to the global variable fg_console is not properly synchronized leading to a use after free in con_font_op.
05 / REFERENCES
Further evidence
- https://android.googlesource.com/kernel/common/+/90bfdeef83f1d6c696039b6a917190dcbbad3220
- https://source.android.com/security/bulletin/2021-12-01
- http://www.openwall.com/lists/oss-security/2020/10/30/1
- http://www.openwall.com/lists/oss-security/2020/11/04/3
- https://bugzilla.redhat.com/show_bug.cgi?id=1893287%2C
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit?id=90bfdeef83f1d6c696039b6a917190dcbbad3220
- https://lists.debian.org/debian-lts-announce/2020/12/msg00015.html
- https://lists.debian.org/debian-lts-announce/2020/12/msg00027.html
- https://security.netapp.com/advisory/ntap-20210702-0005/
- https://www.openwall.com/lists/oss-security/2020/10/30/1%2C
- https://www.openwall.com/lists/oss-security/2020/11/04/3%2C