Get a Pentest and security assessment of your IT network.

2021-current

CVE-2020-10768 – A flaw was found in the Linux Kernel before 5.8-rc1 in the prctl() functi

A flaw was found in the Linux Kernel before 5.8-rc1 in the prctl() function, where it can be used to enable indirect branch speculation after it has been disabled. This call incorrectly reports it as being ‘force disabled’ when it is not and opens the system to Spectre v2 attacks. The highest threat from this vulnerability is to confidentiality.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10768

Reference (s):

  • https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10768
  • URL: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10768
  • https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=4d8df8cbb9156b0a0ab3f802b80cb5db57acc0bf
  • URL: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=4d8df8cbb9156b0a0ab3f802b80cb5db57acc0bf
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2020-25058 - An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9,

2021-current

CVE-2014-9235 - Multiple SQL injection vulnerabilities in Zoph (aka Zoph Organizes Photos

2021-current

CVE-2020-0828 - A remote code execution vulnerability exists in the way that the ChakraCo