CVE-2020-10711

Description

A NULL pointer dereference flaw was found in the Linux kernels SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocols category bitmap into the SELinux extensible bitmap via the ebitmap_netlbl_import routine. While processing the CIPSO restricted bitmap tag in the cipso_v4_parsetag_rbm routine, it sets the security attribute to indicate that the category bitmap is present, even if it has not been allocated. This issue leads to a NULL pointer dereference issue while importing the same category bitmap into SELinux. This flaw allows a remote network user to crash the system kernel, resulting in a denial of service.

Risk Information

Base Score
5.9
MODERATE
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
5.438

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in IBM Security Guardium 10.5Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 10.6Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.1Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.2Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.0Windows
(RHSA-2020:2082) kernel security and bug fix update bpftool-3.10.0-1127.8.2.el7.x86_64.rpmLinux
(RHSA-2020:2082) kernel security and bug fix update kernel-3.10.0-1127.8.2.el7.x86_64.rpmLinux
(RHSA-2020:2082) kernel security and bug fix update kernel-abi-whitelists-3.10.0-1127.8.2.el7.noarch.rpmLinux
(RHSA-2020:2082) kernel security and bug fix update kernel-debug-3.10.0-1127.8.2.el7.x86_64.rpmLinux
(RHSA-2020:2082) kernel security and bug fix update kernel-debug-devel-3.10.0-1127.8.2.el7.x86_64.rpmLinux
(RHSA-2020:2082) kernel security and bug fix update kernel-devel-3.10.0-1127.8.2.el7.x86_64.rpmLinux
(RHSA-2020:2082) kernel security and bug fix update kernel-doc-3.10.0-1127.8.2.el7.noarch.rpmLinux
(RHSA-2020:2082) kernel security and bug fix update kernel-headers-3.10.0-1127.8.2.el7.x86_64.rpmLinux
(RHSA-2020:2082) kernel security and bug fix update kernel-tools-3.10.0-1127.8.2.el7.x86_64.rpmLinux
(RHSA-2020:2082) kernel security and bug fix update kernel-tools-libs-3.10.0-1127.8.2.el7.x86_64.rpmLinux
(RHSA-2020:2082) kernel security and bug fix update kernel-tools-libs-devel-3.10.0-1127.8.2.el7.x86_64.rpmLinux
(RHSA-2020:2082) kernel security and bug fix update perf-3.10.0-1127.8.2.el7.x86_64.rpmLinux
(RHSA-2020:2082) kernel security and bug fix update python-perf-3.10.0-1127.8.2.el7.x86_64.rpmLinux
(RHSA-2020:2103) kernel security update kernel-2.6.32-754.29.2.el6.i686.rpmLinux
(RHSA-2020:2103) kernel security update kernel-2.6.32-754.29.2.el6.x86_64.rpmLinux
(RHSA-2020:2103) kernel security update kernel-abi-whitelists-2.6.32-754.29.2.el6.noarch.rpmLinux
(RHSA-2020:2103) kernel security update kernel-debug-2.6.32-754.29.2.el6.i686.rpmLinux
(RHSA-2020:2103) kernel security update kernel-debug-2.6.32-754.29.2.el6.x86_64.rpmLinux
(RHSA-2020:2103) kernel security update kernel-debug-devel-2.6.32-754.29.2.el6.i686.rpmLinux
(RHSA-2020:2103) kernel security update kernel-debug-devel-2.6.32-754.29.2.el6.x86_64.rpmLinux
(RHSA-2020:2103) kernel security update kernel-devel-2.6.32-754.29.2.el6.i686.rpmLinux
(RHSA-2020:2103) kernel security update kernel-devel-2.6.32-754.29.2.el6.x86_64.rpmLinux
(RHSA-2020:2103) kernel security update kernel-doc-2.6.32-754.29.2.el6.noarch.rpmLinux
(RHSA-2020:2103) kernel security update kernel-firmware-2.6.32-754.29.2.el6.noarch.rpmLinux
(RHSA-2020:2103) kernel security update kernel-headers-2.6.32-754.29.2.el6.i686.rpmLinux
(RHSA-2020:2103) kernel security update kernel-headers-2.6.32-754.29.2.el6.x86_64.rpmLinux
(RHSA-2020:2103) kernel security update perf-2.6.32-754.29.2.el6.i686.rpmLinux
(RHSA-2020:2103) kernel security update perf-2.6.32-754.29.2.el6.x86_64.rpmLinux
(RHSA-2020:2103) kernel security update python-perf-2.6.32-754.29.2.el6.i686.rpmLinux
(RHSA-2020:2103) kernel security update python-perf-2.6.32-754.29.2.el6.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-debuginfo-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-debuginfo-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-debugsource-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-devel-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-devel-azure-4.12.14-16.16.1.noarch.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-source-azure-4.12.14-16.16.1.noarch.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-syms-azure-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-base-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-base-debuginfo-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-debuginfo-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-debugsource-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-devel-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-devel-azure-4.12.14-6.43.1.noarch.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-source-azure-4.12.14-6.43.1.noarch.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-syms-azure-4.12.14-6.43.1.x86_64.rpmLinux
Linux kernel (USN-4411-1) linux-image-aws_5.4.0.1018.19_amd64.debLinux
Linux kernel (USN-4411-1) linux-image-gcp_5.4.0.1019.17_amd64.debLinux
Linux kernel (USN-4411-1) linux-image-gke_5.4.0.1019.17_amd64.debLinux
Linux kernel (USN-4411-1) linux-image-kvm_5.4.0.1018.17_amd64.debLinux
Linux kernel (USN-4411-1) linux-image-oem_5.4.0.40.43_amd64.debLinux
Linux kernel (USN-4411-1) linux-image-oracle_5.4.0.1019.17_amd64.debLinux
Linux kernel (USN-4411-1) linux-image-oem-osp1_5.4.0.40.43_amd64.debLinux
Linux kernel (USN-4411-1) linux-image-lowlatency_5.4.0.40.43_amd64.debLinux
Linux kernel (USN-4411-1) linux-image-generic_5.4.0.40.43_amd64.debLinux
Linux kernel (USN-4411-1) linux-image-5.4.0-1018-aws_5.4.0-1018.18_amd64.debLinux
Linux kernel (USN-4411-1) linux-image-5.4.0-1019-gcp_5.4.0-1019.19_amd64.debLinux
Linux kernel (USN-4411-1) linux-image-5.4.0-40-generic_5.4.0-40.44_amd64.debLinux
Linux kernel (USN-4411-1) linux-image-5.4.0-1019-oracle_5.4.0-1019.19_amd64.debLinux
Linux kernel (USN-4411-1) linux-image-5.4.0-40-lowlatency_5.4.0-40.44_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-4413-1) linux-image-gke-5.0_5.0.0.1043.28_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-4413-1) linux-image-oem-osp1_5.0.0.1063.61_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-4413-1) linux-image-5.0.0-1043-gke_5.0.0-1043.44_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-4413-1) linux-image-5.0.0-1063-oem-osp1_5.0.0-1063.68_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-gcp_4.15.0.1078.80_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-gke_4.15.0.1064.66_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-gke_4.15.0.1078.80_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-kvm_4.15.0.1069.65_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-oem_4.15.0.107.112_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-oem_4.15.0.1091.94_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-oracle_4.15.0.1046.39_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-aws-hwe_4.15.0.1074.74_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-generic_4.15.0.109.97_i386.debLinux
Linux kernel (USN-4414-1) linux-image-generic_4.15.0.109.97_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-virtual_4.15.0.109.97_i386.debLinux
Linux kernel (USN-4414-1) linux-image-virtual_4.15.0.109.97_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-gke-4.15_4.15.0.1064.66_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-lowlatency_4.15.0.109.97_i386.debLinux
Linux kernel (USN-4414-1) linux-image-lowlatency_4.15.0.109.97_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-aws-lts-18.04_4.15.0.1077.79_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-gcp-lts-18.04_4.15.0.1078.94_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-1064-gke_4.15.0-1064.67_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-1069-kvm_4.15.0-1069.70_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-1074-aws_4.15.0-1074.78~16.04.1_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-1077-aws_4.15.0-1077.81_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-1078-gcp_4.15.0-1078.88_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-1078-gcp_4.15.0-1078.88~16.04.1_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-1091-oem_4.15.0-1091.101_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-oracle-lts-18.04_4.15.0.1048.57_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-generic-hwe-16.04_4.15.0.107.112_i386.debLinux
Linux kernel (USN-4414-1) linux-image-generic-hwe-16.04_4.15.0.107.112_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-virtual-hwe-16.04_4.15.0.107.112_i386.debLinux
Linux kernel (USN-4414-1) linux-image-virtual-hwe-16.04_4.15.0.107.112_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-1046-oracle_4.15.0-1046.50~16.04.1_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-1048-oracle_4.15.0-1048.52_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-107-generic_4.15.0-107.108~16.04.1_i386.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-107-generic_4.15.0-107.108~16.04.1_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-109-generic_4.15.0-109.110_i386.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-109-generic_4.15.0-109.110_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-lowlatency-hwe-16.04_4.15.0.107.112_i386.debLinux
Linux kernel (USN-4414-1) linux-image-lowlatency-hwe-16.04_4.15.0.107.112_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-107-lowlatency_4.15.0-107.108~16.04.1_i386.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-107-lowlatency_4.15.0-107.108~16.04.1_amd64.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-109-lowlatency_4.15.0-109.110_i386.debLinux
Linux kernel (USN-4414-1) linux-image-4.15.0-109-lowlatency_4.15.0-109.110_amd64.debLinux
Linux kernel (USN-4419-1) linux-image-aws_4.4.0.1110.114_amd64.debLinux
Linux kernel (USN-4419-1) linux-image-kvm_4.4.0.1076.74_amd64.debLinux
Linux kernel (USN-4419-1) linux-image-generic_4.4.0.185.191_i386.debLinux
Linux kernel (USN-4419-1) linux-image-generic_4.4.0.185.191_amd64.debLinux
Linux kernel (USN-4419-1) linux-image-virtual_4.4.0.185.191_i386.debLinux
Linux kernel (USN-4419-1) linux-image-virtual_4.4.0.185.191_amd64.debLinux
Linux kernel (USN-4419-1) linux-image-lowlatency_4.4.0.185.191_i386.debLinux
Linux kernel (USN-4419-1) linux-image-lowlatency_4.4.0.185.191_amd64.debLinux
Linux kernel (USN-4419-1) linux-image-4.4.0-1076-kvm_4.4.0-1076.83_amd64.debLinux
Linux kernel (USN-4419-1) linux-image-4.4.0-1110-aws_4.4.0-1110.121_amd64.debLinux
Linux kernel (USN-4419-1) linux-image-4.4.0-185-generic_4.4.0-185.215_i386.debLinux
Linux kernel (USN-4419-1) linux-image-4.4.0-185-generic_4.4.0-185.215_amd64.debLinux
Linux kernel (USN-4419-1) linux-image-4.4.0-185-lowlatency_4.4.0-185.215_i386.debLinux
Linux kernel (USN-4419-1) linux-image-4.4.0-185-lowlatency_4.4.0-185.215_amd64.debLinux
Kernel-uek update (ELSA-2021-9002) kernel-uek-4.1.12-124.46.3.el6uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2021-9002) kernel-uek-debug-4.1.12-124.46.3.el6uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2021-9002) kernel-uek-debug-devel-4.1.12-124.46.3.el6uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2021-9002) kernel-uek-devel-4.1.12-124.46.3.el6uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2021-9002) kernel-uek-doc-4.1.12-124.46.3.el6uek.noarch.rpmLinux
Kernel-uek-firmware update (ELSA-2021-9002) kernel-uek-firmware-4.1.12-124.46.3.el6uek.noarch.rpmLinux
Kernel-uek update (ELSA-2021-9002) kernel-uek-4.1.12-124.46.3.el7uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2021-9002) kernel-uek-debug-4.1.12-124.46.3.el7uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2021-9002) kernel-uek-debug-devel-4.1.12-124.46.3.el7uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2021-9002) kernel-uek-devel-4.1.12-124.46.3.el7uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2021-9002) kernel-uek-doc-4.1.12-124.46.3.el7uek.noarch.rpmLinux
Kernel-uek-firmware update (ELSA-2021-9002) kernel-uek-firmware-4.1.12-124.46.3.el7uek.noarch.rpmLinux
(CESA-2020:2082) kernel security and bug fix update kernel-3.10.0-1127.8.2.el7.x86_64.rpmLinux
(CESA-2020:2103) kernel security update kernel-2.6.32-754.29.2.el6.i686.rpmLinux
(CESA-2020:2103) kernel security update kernel-2.6.32-754.29.2.el6.x86_64.rpmLinux
(CESA-2020:2103) kernel security update kernel-abi-whitelists-2.6.32-754.29.2.el6.noarch.rpmLinux
(CESA-2020:2103) kernel security update kernel-debug-2.6.32-754.29.2.el6.i686.rpmLinux
(CESA-2020:2103) kernel security update kernel-debug-2.6.32-754.29.2.el6.x86_64.rpmLinux
(CESA-2020:2103) kernel security update kernel-debug-devel-2.6.32-754.29.2.el6.i686.rpmLinux
(CESA-2020:2103) kernel security update kernel-debug-devel-2.6.32-754.29.2.el6.x86_64.rpmLinux
(CESA-2020:2103) kernel security update kernel-devel-2.6.32-754.29.2.el6.i686.rpmLinux
(CESA-2020:2103) kernel security update kernel-devel-2.6.32-754.29.2.el6.x86_64.rpmLinux
(CESA-2020:2103) kernel security update kernel-doc-2.6.32-754.29.2.el6.noarch.rpmLinux
(CESA-2020:2103) kernel security update kernel-firmware-2.6.32-754.29.2.el6.noarch.rpmLinux
(CESA-2020:2103) kernel security update kernel-headers-2.6.32-754.29.2.el6.i686.rpmLinux
(CESA-2020:2103) kernel security update kernel-headers-2.6.32-754.29.2.el6.x86_64.rpmLinux
(CESA-2020:2103) kernel security update perf-2.6.32-754.29.2.el6.x86_64.rpmLinux
(CESA-2020:2103) kernel security update python-perf-2.6.32-754.29.2.el6.i686.rpmLinux
(CESA-2020:2103) kernel security update python-perf-2.6.32-754.29.2.el6.x86_64.rpmLinux
kernel Security Update (ALAS-2020-1425) kernel-livepatch-4.14.177-139.254-1.0-0.amzn2.x86_64.rpmLinux
NULL Pointer Dereference Vulnerability (CVE-2020-10711)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234