CVE-2020-8648: Use After Free
A use-after-free flaw was found in the Linux kernel console driver when using the copy-paste buffer. This flaw allows a local user to crash the system.
Other sources
There is a use-after-free vulnerability in the Linux kernel in the nttyreceivebufcommon function in drivers/tty/ntty.c.
Reference: https://bugzilla.kernel.org/showbug.cgi?id=206361
— Red Hat
There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the nttyreceivebufcommon function in drivers/tty/ntty.c.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 0:3.10.0-1160.31.1.rt56.1169.el7 - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 0:3.10.0-1160.31.1.el7 - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 0:3.10.0-957.80.1.el7 - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 0:3.10.0-1062.56.1.el7 - Upgrade
Upgrade
redhat/kernel-rtto a version that resolves this vulnerability.Fixed in 0:4.18.0-240.rt7.54.el8 - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 0:4.18.0-240.el8 - Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.262-1Fixed in 6.1.176-1Fixed in 6.1.180-1Fixed in 6.12.94-1Fixed in 6.12.101-1Fixed in 7.1.7-1Fixed in 7.1.8-1
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2020-8648?
CVE-2020-8648 is classified as a high-severity vulnerability due to its potential to crash the system.
How do I fix CVE-2020-8648?
To fix CVE-2020-8648, you should upgrade to the patched kernel versions provided by your distribution.
What systems are affected by CVE-2020-8648?
CVE-2020-8648 affects various Linux kernel versions up to 5.5.2 and specific distributions like Red Hat, Ubuntu, and Debian.
Can CVE-2020-8648 be exploited remotely?
No, CVE-2020-8648 is considered a local privilege escalation vulnerability, meaning it requires local access to the system.
Is there a workaround for CVE-2020-8648 if I cannot update?
There are no specific workarounds recommended for CVE-2020-8648; updating the kernel is the primary solution.