Get a Pentest and security assessment of your IT network.

2021-current

CVE-2020-10768 – A flaw was found in the Linux Kernel before 5.8-rc1 in the prctl() functi

A flaw was found in the Linux Kernel before 5.8-rc1 in the prctl() function, where it can be used to enable indirect branch speculation after it has been disabled. This call incorrectly reports it as being ‘force disabled’ when it is not and opens the system to Spectre v2 attacks. The highest threat from this vulnerability is to confidentiality.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10768

Reference (s):

  • https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10768
  • URL: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10768
  • https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=4d8df8cbb9156b0a0ab3f802b80cb5db57acc0bf
  • URL: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=4d8df8cbb9156b0a0ab3f802b80cb5db57acc0bf
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-6594 - Unspecified vulnerability in the Oracle iLearning component in Oracle iLe

2021-current

CVE-2019-8457 - SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-b

2021-current

CVE-2020-12258 - rConfig 3.9.4 is vulnerable to session fixation because session expiry an