Get a Pentest and security assessment of your IT network.

2021-current

CVE-2020-10768 – A flaw was found in the Linux Kernel before 5.8-rc1 in the prctl() functi

A flaw was found in the Linux Kernel before 5.8-rc1 in the prctl() function, where it can be used to enable indirect branch speculation after it has been disabled. This call incorrectly reports it as being ‘force disabled’ when it is not and opens the system to Spectre v2 attacks. The highest threat from this vulnerability is to confidentiality.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10768

Reference (s):

  • https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10768
  • URL: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10768
  • https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=4d8df8cbb9156b0a0ab3f802b80cb5db57acc0bf
  • URL: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=4d8df8cbb9156b0a0ab3f802b80cb5db57acc0bf
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-4742 - Cross-site scripting (XSS) vulnerability in system/class_link.php in the

2021-current

CVE-2014-9837 - coders/pnm.c in ImageMagick 6.9.0-1 Beta and earlier allows remote attack

2021-current

CVE-2020-10446 - The way URIs are handled in admin/header.php in Chadha PHPKB Standard Mul