CVE-2020-8992: Medium severity Linux Linux kernel vulnerability
ext4protectreservedinode in fs/ext4/blockvalidity.c in the Linux kernel through 5.5.3 allows attackers to cause a denial of service (soft lockup) via a crafted journal size.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.262-1Fixed in 6.1.176-1Fixed in 6.1.180-1Fixed in 6.12.94-1Fixed in 6.12.101-1Fixed in 7.1.7-1Fixed in 7.1.8-1
Event History
Frequently Asked Questions
What is the severity of CVE-2020-8992?
CVE-2020-8992 is classified as a denial of service vulnerability that causes a soft lockup in the Linux kernel.
How do I fix CVE-2020-8992?
To resolve CVE-2020-8992, upgrade to Linux kernel versions 5.10.223-1, 5.10.226-1, 6.1.123-1, 6.1.119-1, 6.12.10-1, or 6.12.11-1.
Which Linux kernel versions are affected by CVE-2020-8992?
CVE-2020-8992 affects the Linux kernel versions up to and including 5.5.3.
What are the potential impacts of CVE-2020-8992?
The potential impact of CVE-2020-8992 is a denial of service which can lead to system instability and unresponsiveness.
Is CVE-2020-8992 present in Ubuntu distributions?
Yes, CVE-2020-8992 affects specific versions of Ubuntu Linux including 14.04, 16.04, and 18.04.