CVE-2020-28915

MEDIUM

Linux Kernel < 5.8.15 - Out-of-Bounds Read

Title source: rule
STIX 2.1

Description

A buffer over-read (at the framebuffer layer) in the fbcon code in the Linux kernel before 5.8.15 could be used by local attackers to read kernel memory, aka CID-6735b4632def.

Scores

CVSS v3 5.8
EPSS 0.0012
EPSS Percentile 30.1%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:U/C:L/I:H/A:H

Details

CWE
CWE-125
Status published
Products (1)
linux/linux_kernel < 5.8.15
Published Nov 18, 2020
Tracked Since Feb 18, 2026