FS#68257 - [security][linux][linux-lts] CVE-2020-16119
Attached to Project:
Arch Linux
Opened by loqs (loqs) - Wednesday, 14 October 2020, 19:36 GMT
Last edited by Andreas Radke (AndyRTR) - Thursday, 28 January 2021, 07:01 GMT
Opened by loqs (loqs) - Wednesday, 14 October 2020, 19:36 GMT
Last edited by Andreas Radke (AndyRTR) - Thursday, 28 January 2021, 07:01 GMT
|
Details
Description:
A flaw was found in the Linux kernel. When reusing a socket with an attached dccps_hc_tx_ccid as a listener, the socket will be used after being released leading to denial of service (DoS) or a potential code execution. Additional info: * linux 5.8.14.arch1-1 * linux-lts 5.4.70-1 * https://lore.kernel.org/netdev/20201013171849.236025-1-kleber.souza%40canonical.com/T/ |
This task depends upon
There's no solution or fix available so far. Upstream is still working on it.
[1] https://github.com/archlinux/svntogit-packages/commit/c07751100e1d64d9aa5789881ddc2ef68e43aed4