CVE-2020-10751

Description

A flaw was found in the Linux kernels SELinux LSM hook implementation before version 5.7, where it incorrectly assumed that an skb would only contain a single netlink message. The hook would incorrectly only validate the first netlink message in the skb and allow or deny the rest of the messages within the skb with the granted permission without further processing.

Risk Information

Base Score
6.1
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N
EPSS Score
Exploitation Probability
0.084

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in IBM Security Guardium 11.1Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.2Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.0Windows
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-debuginfo-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-debuginfo-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-debugsource-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-devel-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-devel-azure-4.12.14-16.16.1.noarch.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-source-azure-4.12.14-16.16.1.noarch.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-syms-azure-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-base-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-base-debuginfo-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-debuginfo-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-debugsource-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-devel-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-devel-azure-4.12.14-6.43.1.noarch.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-source-azure-4.12.14-6.43.1.noarch.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-syms-azure-4.12.14-6.43.1.x86_64.rpmLinux
Linux kernel (USN-4390-1) linux-image-gcp_4.15.0.1077.79_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-gke_4.15.0.1063.65_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-gke_4.15.0.1077.79_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-kvm_4.15.0.1067.63_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-oem_4.15.0.106.111_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-oem_4.15.0.1087.91_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-azure_4.15.0.1089.84_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-oracle_4.15.0.1045.38_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-aws-hwe_4.15.0.1073.73_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-generic_4.15.0.106.94_i386.debLinux
Linux kernel (USN-4390-1) linux-image-generic_4.15.0.106.94_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-virtual_4.15.0.106.94_i386.debLinux
Linux kernel (USN-4390-1) linux-image-virtual_4.15.0.106.94_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-gke-4.15_4.15.0.1063.65_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-azure-edge_4.15.0.1089.84_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-lowlatency_4.15.0.106.94_i386.debLinux
Linux kernel (USN-4390-1) linux-image-lowlatency_4.15.0.106.94_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-aws-lts-18.04_4.15.0.1073.76_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-1063-gke_4.15.0-1063.66_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-1067-kvm_4.15.0-1067.68_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-1073-aws_4.15.0-1073.77_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-1073-aws_4.15.0-1073.77~16.04.1_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-1077-gcp_4.15.0-1077.87~16.04.1_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-1087-oem_4.15.0-1087.97_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-azure-lts-18.04_4.15.0.1089.60_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-oracle-lts-18.04_4.15.0.1045.54_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-1089-azure_4.15.0-1089.99_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-1089-azure_4.15.0-1089.99~16.04.1_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-generic-hwe-16.04_4.15.0.106.111_i386.debLinux
Linux kernel (USN-4390-1) linux-image-generic-hwe-16.04_4.15.0.106.111_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-virtual-hwe-16.04_4.15.0.106.111_i386.debLinux
Linux kernel (USN-4390-1) linux-image-virtual-hwe-16.04_4.15.0.106.111_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-1045-oracle_4.15.0-1045.49_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-1045-oracle_4.15.0-1045.49~16.04.1_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-106-generic_4.15.0-106.107_i386.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-106-generic_4.15.0-106.107_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-106-generic_4.15.0-106.107~16.04.1_i386.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-106-generic_4.15.0-106.107~16.04.1_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-lowlatency-hwe-16.04_4.15.0.106.111_i386.debLinux
Linux kernel (USN-4390-1) linux-image-lowlatency-hwe-16.04_4.15.0.106.111_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-106-lowlatency_4.15.0-106.107_i386.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-106-lowlatency_4.15.0-106.107_amd64.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-106-lowlatency_4.15.0-106.107~16.04.1_i386.debLinux
Linux kernel (USN-4390-1) linux-image-4.15.0-106-lowlatency_4.15.0-106.107~16.04.1_amd64.debLinux
Linux kernel (USN-4391-1) linux-image-aws_4.4.0.1109.113_amd64.debLinux
Linux kernel (USN-4391-1) linux-image-kvm_4.4.0.1075.73_amd64.debLinux
Linux kernel (USN-4391-1) linux-image-generic_4.4.0.184.190_i386.debLinux
Linux kernel (USN-4391-1) linux-image-generic_4.4.0.184.190_amd64.debLinux
Linux kernel (USN-4391-1) linux-image-virtual_4.4.0.184.190_i386.debLinux
Linux kernel (USN-4391-1) linux-image-virtual_4.4.0.184.190_amd64.debLinux
Linux kernel (USN-4391-1) linux-image-lowlatency_4.4.0.184.190_i386.debLinux
Linux kernel (USN-4391-1) linux-image-lowlatency_4.4.0.184.190_amd64.debLinux
Linux kernel (USN-4391-1) linux-image-4.4.0-1075-kvm_4.4.0-1075.82_amd64.debLinux
Linux kernel (USN-4391-1) linux-image-4.4.0-1109-aws_4.4.0-1109.120_amd64.debLinux
Linux kernel (USN-4391-1) linux-image-4.4.0-184-generic_4.4.0-184.214_i386.debLinux
Linux kernel (USN-4391-1) linux-image-4.4.0-184-generic_4.4.0-184.214_amd64.debLinux
Linux kernel (USN-4391-1) linux-image-4.4.0-184-lowlatency_4.4.0-184.214_i386.debLinux
Linux kernel (USN-4391-1) linux-image-4.4.0-184-lowlatency_4.4.0-184.214_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-4413-1) linux-image-gke-5.0_5.0.0.1043.28_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-4413-1) linux-image-oem-osp1_5.0.0.1063.61_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-4413-1) linux-image-5.0.0-1043-gke_5.0.0-1043.44_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-4413-1) linux-image-5.0.0-1063-oem-osp1_5.0.0-1063.68_amd64.debLinux
kernel Security Update (ALAS-2020-1431) kernel-livepatch-4.14.181-140.257-1.0-0.amzn2.x86_64.rpmLinux
CVE-2020-10751NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234