CVE-2020-25211

MEDIUM

Linux Kernel < 5.8.7 - Buffer Overflow

Title source: rule
STIX 2.1

Description

In the Linux kernel through 5.8.7, local attackers able to inject conntrack netlink configuration could overflow a local buffer, causing crashes or triggering use of incorrect protocol numbers in ctnetlink_parse_tuple_filter in net/netfilter/nf_conntrack_netlink.c, aka CID-1cc5ef91d2ff.

References (9)

Core 9
Core References
Third Party Advisory x_refsource_misc
https://twitter.com/grsecurity/status/1303646421158109185
Third Party Advisory x_refsource_confirm
https://security.netapp.com/advisory/ntap-20201009-0001/
Third Party Advisory vendor-advisory x_refsource_debian
https://www.debian.org/security/2020/dsa-4774
Mailing List, Third Party Advisory mailing-list x_refsource_mlist
https://lists.debian.org/debian-lts-announce/2020/10/msg00028.html
Mailing List, Third Party Advisory mailing-list x_refsource_mlist
https://lists.debian.org/debian-lts-announce/2020/10/msg00032.html
Mailing List, Third Party Advisory mailing-list x_refsource_mlist
https://lists.debian.org/debian-lts-announce/2020/10/msg00034.html

Scores

CVSS v3 6.0
EPSS 0.0004
EPSS Percentile 12.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H

Details

CWE
CWE-120
Status published
Products (5)
debian/debian_linux 9.0
debian/debian_linux 10.0
fedoraproject/fedora 31
fedoraproject/fedora 32
linux/linux_kernel < 5.8.7
Published Sep 09, 2020
Tracked Since Feb 18, 2026