CVE-2020-10751

MEDIUM

Linux kernel <5.7 - Privilege Escalation

Title source: llm
STIX 2.1

Description

A flaw was found in the Linux kernels SELinux LSM hook implementation before version 5.7, where it incorrectly assumed that an skb would only contain a single netlink message. The hook would incorrectly only validate the first netlink message in the skb and allow or deny the rest of the messages within the skb with the granted permission without further processing.

References (18)

Core 18
Core References
Mailing List, Third Party Advisory mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2020/05/27/3
Mailing List mailing-list x_refsource_mlist
https://lists.debian.org/debian-lts-announce/2020/06/msg00011.html
Mailing List mailing-list x_refsource_mlist
https://lists.debian.org/debian-lts-announce/2020/06/msg00012.html
Mailing List mailing-list x_refsource_mlist
https://lists.debian.org/debian-lts-announce/2020/06/msg00013.html
Vendor Advisory vendor-advisory x_refsource_ubuntu
https://usn.ubuntu.com/4389-1/
Vendor Advisory vendor-advisory x_refsource_ubuntu
https://usn.ubuntu.com/4390-1/
Vendor Advisory vendor-advisory x_refsource_ubuntu
https://usn.ubuntu.com/4391-1/
Vendor Advisory vendor-advisory x_refsource_ubuntu
https://usn.ubuntu.com/4413-1/
Vendor Advisory vendor-advisory x_refsource_ubuntu
https://usn.ubuntu.com/4412-1/
Issue Tracking, Patch, Third Party Advisory x_refsource_confirm
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10751
Mailing List, Third Party Advisory x_refsource_confirm
https://www.openwall.com/lists/oss-security/2020/04/30/5
Third Party Advisory vendor-advisory x_refsource_debian
https://www.debian.org/security/2020/dsa-4698
Third Party Advisory vendor-advisory x_refsource_debian
https://www.debian.org/security/2020/dsa-4699

Scores

CVSS v3 6.1
EPSS 0.0008
EPSS Percentile 24.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N

Details

CWE
CWE-349 CWE-345
Status published
Products (3)
kernel/selinux < 5.7
redhat/enterprise_linux_server 7.0
redhat/enterprise_linux_server 8.0
Published May 26, 2020
Tracked Since Feb 18, 2026