CVE-2020-28097: Medium severity linux kernel vulnerability
Published Jun 24, 2021
·Updated
The vgacon subsystem in the Linux kernel before 5.8.10 mishandles software scrollback. There is a vgaconscrolldelta out-of-bounds read, aka CID-973c096f6a85.
Affected Software
18 affected components
Linux Linux kernel<5.8.10
NetApp Cloud Backup
NetApp H410c Firmware
NetApp H410c
NetApp H300s Firmware
NetApp H300s
NetApp H500s Firmware
NetApp H500s
NetApp H700s Firmware
NetApp H700s
NetApp H300e Firmware
NetApp H300e
NetApp H500e Firmware
NetApp H500e
NetApp H700e Firmware
NetApp H700e
NetApp H410s Firmware
NetApp H410s
Remediation
Patch Available
Event History
Jun 24, 2021
CVE Published
via MITRE·12:00 PM
Data Sourced
via MITRE·12:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2020-28097.
2
What is the severity rating of CVE-2020-28097?
The severity rating of CVE-2020-28097 is medium (5.9).
3
What software is affected by CVE-2020-28097?
Linux kernel versions before 5.8.10, Netapp Cloud Backup, Netapp H410c Firmware.
4
How does CVE-2020-28097 affect Netapp H410c?
Netapp H410c is affected by CVE-2020-28097.
5
How can I fix CVE-2020-28097?
Update your Linux kernel to version 5.8.10 or above.