CVE-2020-8249: Buffer Overflow
Published Oct 28, 2020
·Updated
A vulnerability in the Pulse Secure Desktop Client (Linux) < 9.1R9 could allow local attackers to perform buffer overflow.
Affected Software
14 affected components
PulseSecure Pulse Secure Desktop Client Linux<9.1
PulseSecure Pulse Secure Desktop Client Linux=9.1-r1
PulseSecure Pulse Secure Desktop Client Linux=9.1-r2
PulseSecure Pulse Secure Desktop Client Linux=9.1-r3
PulseSecure Pulse Secure Desktop Client Linux=9.1-r3.1
PulseSecure Pulse Secure Desktop Client Linux=9.1-r4
PulseSecure Pulse Secure Desktop Client Linux=9.1-r4.1
PulseSecure Pulse Secure Desktop Client Linux=9.1-r4.2
PulseSecure Pulse Secure Desktop Client Linux=9.1-r5
PulseSecure Pulse Secure Desktop Client Linux=9.1-r6
PulseSecure Pulse Secure Desktop Client Linux=9.1-r7
PulseSecure Pulse Secure Desktop Client Linux=9.1-r7.1
PulseSecure Pulse Secure Desktop Client Linux=9.1-r8
PulseSecure Pulse Secure Desktop Client Linux=9.1-r8.2
Event History
Oct 28, 2020
CVE Published
via MITRE·12:40 PM
Data Sourced
via MITRE·12:40 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-8249.
2
What is the title of the vulnerability?
The title of the vulnerability is 'A vulnerability in the Pulse Secure Desktop Client (Linux) < 9.1R9 could allow local attackers to perform buffer overflow.'
3
What is the severity of CVE-2020-8249?
The severity of CVE-2020-8249 is high with a CVSS score of 7.8.
4
Which software versions are affected by CVE-2020-8249?
The Pulse Secure Desktop Client (Linux) versions < 9.1R9 are affected by CVE-2020-8249.
5
How can attackers exploit the vulnerability?
Attackers can exploit the vulnerability by performing a buffer overflow attack.