CVE-2020-27194
An issue was discovered in the Linux kernel before 5.8.15. scalar32_min_max_or in kernel/bpf/verifier.c mishandles bounds tracking during use of 64-bit values, aka CID-5b9fbeb75b6a.
- Affected products
- Alt Linux, Linux Kernel, Ubuntu
- Linux Linux Kernel
- < 5.8.15
- Fix
- Available
- CVSS 3.1
- 5.5 MEDIUM
- EPSS
- 2.0% (79th percentile)
- Weakness
- CWE-681
- NVD status
- Modified
- Published
- 2020-10-16
CVE-2020-27194 at NVD
8 known exploits for CVE-2020-27194
Proof-of-concept code and exploit modules indexed by Sploitus
CVE-2020-27194
CVE-2020-27194-exp
kernel-exploit-factory
Exploit for Incorrect Conversion between Numeric Types in Linux Linux_Kernel
Exploit for Improper Access Control in Xen
Exploit for Improper Access Control in Xen
Exploit for Incorrect Conversion between Numeric Types in Linux Linux_Kernel
Exploit for Out-of-bounds Write in Libgd