CVE-2020-11494

Description

An issue was discovered in slc_bump in drivers/net/can/slcan.c in the Linux kernel 3.16 through 5.6.2. It allows attackers to read uninitialized can_frame data, potentially containing sensitive information from kernel stack memory, if the configuration lacks CONFIG_INIT_STACK_ALL, aka CID-b9258a2cece4.

Risk Information

Base Score
4.4
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.071

Associated Vulnerability

VulnerabilityOS Platform
SUSE-SU-2020:1118-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-4.12.14-16.13.1.x86_64.rpmLinux
SUSE-SU-2020:1118-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-4.12.14-16.13.1.x86_64.rpmLinux
SUSE-SU-2020:1118-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-debuginfo-4.12.14-16.13.1.x86_64.rpmLinux
SUSE-SU-2020:1118-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-debuginfo-4.12.14-16.13.1.x86_64.rpmLinux
SUSE-SU-2020:1118-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-debugsource-4.12.14-16.13.1.x86_64.rpmLinux
SUSE-SU-2020:1118-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-devel-4.12.14-16.13.1.x86_64.rpmLinux
SUSE-SU-2020:1118-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-devel-azure-4.12.14-16.13.1.noarch.rpmLinux
SUSE-SU-2020:1118-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-source-azure-4.12.14-16.13.1.noarch.rpmLinux
SUSE-SU-2020:1118-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-syms-azure-4.12.14-16.13.1.x86_64.rpmLinux
SUSE-SU-2020:1119-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-4.12.14-6.40.1.x86_64.rpmLinux
SUSE-SU-2020:1119-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-base-4.12.14-6.40.1.x86_64.rpmLinux
SUSE-SU-2020:1119-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-base-debuginfo-4.12.14-6.40.1.x86_64.rpmLinux
SUSE-SU-2020:1119-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-debuginfo-4.12.14-6.40.1.x86_64.rpmLinux
SUSE-SU-2020:1119-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-debugsource-4.12.14-6.40.1.x86_64.rpmLinux
SUSE-SU-2020:1119-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-devel-4.12.14-6.40.1.x86_64.rpmLinux
SUSE-SU-2020:1119-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-devel-azure-4.12.14-6.40.1.noarch.rpmLinux
SUSE-SU-2020:1119-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-source-azure-4.12.14-6.40.1.noarch.rpmLinux
SUSE-SU-2020:1119-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-syms-azure-4.12.14-6.40.1.x86_64.rpmLinux
SUSE-SU-2020:1141-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-default-4.12.14-95.51.1.x86_64.rpmLinux
SUSE-SU-2020:1141-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-default-base-4.12.14-95.51.1.x86_64.rpmLinux
SUSE-SU-2020:1141-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-default-base-debuginfo-4.12.14-95.51.1.x86_64.rpmLinux
SUSE-SU-2020:1141-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-default-debuginfo-4.12.14-95.51.1.x86_64.rpmLinux
SUSE-SU-2020:1141-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-default-debugsource-4.12.14-95.51.1.x86_64.rpmLinux
SUSE-SU-2020:1141-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-default-devel-4.12.14-95.51.1.x86_64.rpmLinux
SUSE-SU-2020:1141-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-default-devel-debuginfo-4.12.14-95.51.1.x86_64.rpmLinux
SUSE-SU-2020:1141-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-devel-4.12.14-95.51.1.noarch.rpmLinux
SUSE-SU-2020:1141-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-macros-4.12.14-95.51.1.noarch.rpmLinux
SUSE-SU-2020:1141-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-source-4.12.14-95.51.1.noarch.rpmLinux
SUSE-SU-2020:1141-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-syms-4.12.14-95.51.1.x86_64.rpmLinux
SUSE-SU-2020:1142-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-4.12.14-122.20.1.x86_64.rpmLinux
SUSE-SU-2020:1142-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-base-4.12.14-122.20.1.x86_64.rpmLinux
SUSE-SU-2020:1142-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-base-debuginfo-4.12.14-122.20.1.x86_64.rpmLinux
SUSE-SU-2020:1142-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-debuginfo-4.12.14-122.20.1.x86_64.rpmLinux
SUSE-SU-2020:1142-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-debugsource-4.12.14-122.20.1.x86_64.rpmLinux
SUSE-SU-2020:1142-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-devel-4.12.14-122.20.1.x86_64.rpmLinux
SUSE-SU-2020:1142-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-devel-debuginfo-4.12.14-122.20.1.x86_64.rpmLinux
SUSE-SU-2020:1142-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-devel-4.12.14-122.20.1.noarch.rpmLinux
SUSE-SU-2020:1142-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-macros-4.12.14-122.20.1.noarch.rpmLinux
SUSE-SU-2020:1142-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-source-4.12.14-122.20.1.noarch.rpmLinux
SUSE-SU-2020:1142-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-syms-4.12.14-122.20.1.x86_64.rpmLinux
Linux kernel (USN-4363-1) linux-image-gcp_4.15.0.1071.77_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-gke_4.15.0.1059.63_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-gke_4.15.0.1071.77_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-oem_4.15.0.101.108_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-oem_4.15.0.1081.85_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-oracle_4.15.0.1039.32_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-aws-hwe_4.15.0.1067.67_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-generic_4.15.0.101.91_i386.debLinux
Linux kernel (USN-4363-1) linux-image-generic_4.15.0.101.91_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-virtual_4.15.0.101.91_i386.debLinux
Linux kernel (USN-4363-1) linux-image-virtual_4.15.0.101.91_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-gke-4.15_4.15.0.1059.63_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-lowlatency_4.15.0.101.91_i386.debLinux
Linux kernel (USN-4363-1) linux-image-lowlatency_4.15.0.101.91_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-aws-lts-18.04_4.15.0.1067.70_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-1059-gke_4.15.0-1059.62_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-1067-aws_4.15.0-1067.71_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-1067-aws_4.15.0-1067.71~16.04.1_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-1071-gcp_4.15.0-1071.81~16.04.1_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-1081-oem_4.15.0-1081.91_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-oracle-lts-18.04_4.15.0.1039.48_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-generic-hwe-16.04_4.15.0.101.108_i386.debLinux
Linux kernel (USN-4363-1) linux-image-generic-hwe-16.04_4.15.0.101.108_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-virtual-hwe-16.04_4.15.0.101.108_i386.debLinux
Linux kernel (USN-4363-1) linux-image-virtual-hwe-16.04_4.15.0.101.108_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-101-generic_4.15.0-101.102_i386.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-101-generic_4.15.0-101.102_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-101-generic_4.15.0-101.102~16.04.1_i386.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-101-generic_4.15.0-101.102~16.04.1_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-1039-oracle_4.15.0-1039.43_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-1039-oracle_4.15.0-1039.43~16.04.1_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-lowlatency-hwe-16.04_4.15.0.101.108_i386.debLinux
Linux kernel (USN-4363-1) linux-image-lowlatency-hwe-16.04_4.15.0.101.108_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-101-lowlatency_4.15.0-101.102_i386.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-101-lowlatency_4.15.0-101.102_amd64.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-101-lowlatency_4.15.0-101.102~16.04.1_i386.debLinux
Linux kernel (USN-4363-1) linux-image-4.15.0-101-lowlatency_4.15.0-101.102~16.04.1_amd64.debLinux
Linux kernel (USN-4364-1) linux-image-aws_4.4.0.1107.111_amd64.debLinux
Linux kernel (USN-4364-1) linux-image-generic_4.4.0.179.187_i386.debLinux
Linux kernel (USN-4364-1) linux-image-generic_4.4.0.179.187_amd64.debLinux
Linux kernel (USN-4364-1) linux-image-virtual_4.4.0.179.187_i386.debLinux
Linux kernel (USN-4364-1) linux-image-virtual_4.4.0.179.187_amd64.debLinux
Linux kernel (USN-4364-1) linux-image-lowlatency_4.4.0.179.187_i386.debLinux
Linux kernel (USN-4364-1) linux-image-lowlatency_4.4.0.179.187_amd64.debLinux
Linux kernel (USN-4364-1) linux-image-4.4.0-1107-aws_4.4.0-1107.118_amd64.debLinux
Linux kernel (USN-4364-1) linux-image-4.4.0-179-generic_4.4.0-179.209_i386.debLinux
Linux kernel (USN-4364-1) linux-image-4.4.0-179-generic_4.4.0-179.209_amd64.debLinux
Linux kernel (USN-4364-1) linux-image-4.4.0-179-lowlatency_4.4.0-179.209_i386.debLinux
Linux kernel (USN-4364-1) linux-image-4.4.0-179-lowlatency_4.4.0-179.209_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-4368-1) linux-image-gke-5.0_5.0.0.1037.25_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-4368-1) linux-image-oem-osp1_5.0.0.1052.55_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-4368-1) linux-image-5.0.0-1037-gke_5.0.0-1037.38_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-4368-1) linux-image-5.0.0-1052-oem-osp1_5.0.0-1052.57_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-aws_5.3.0.1019.20_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-aws_5.3.0.1019.31_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-gcp_5.3.0.1020.19_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-gcp_5.3.0.1020.31_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-gke_5.3.0.1020.31_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-kvm_5.3.0.1017.19_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-oracle_5.3.0.1018.19_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-oracle_5.3.0.1018.33_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-generic_5.3.0.53.45_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-gke-5.3_5.3.0.1020.10_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-virtual_5.3.0.53.45_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-aws-edge_5.3.0.1019.20_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-gcp-edge_5.3.0.1020.19_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-gkeop-5.3_5.3.0.53.109_i386.debLinux
Linux kernel (USN-4369-1) linux-image-gkeop-5.3_5.3.0.53.109_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-lowlatency_5.3.0.53.45_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-5.3.0-1017-kvm_5.3.0-1017.19_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-5.3.0-1019-aws_5.3.0-1019.21_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-5.3.0-1019-aws_5.3.0-1019.21~18.04.1_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-5.3.0-1020-gcp_5.3.0-1020.22_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-5.3.0-1020-gcp_5.3.0-1020.22~18.04.1_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-5.3.0-1020-gke_5.3.0-1020.22~18.04.1_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-5.3.0-53-generic_5.3.0-53.47_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-5.3.0-53-generic_5.3.0-53.47~18.04.1_i386.debLinux
Linux kernel (USN-4369-1) linux-image-5.3.0-53-generic_5.3.0-53.47~18.04.1_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-5.3.0-1018-oracle_5.3.0-1018.20_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-5.3.0-1018-oracle_5.3.0-1018.20~18.04.1_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-generic-hwe-18.04_5.3.0.53.109_i386.debLinux
Linux kernel (USN-4369-1) linux-image-generic-hwe-18.04_5.3.0.53.109_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-virtual-hwe-18.04_5.3.0.53.109_i386.debLinux
Linux kernel (USN-4369-1) linux-image-virtual-hwe-18.04_5.3.0.53.109_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-5.3.0-53-lowlatency_5.3.0-53.47_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-5.3.0-53-lowlatency_5.3.0-53.47~18.04.1_i386.debLinux
Linux kernel (USN-4369-1) linux-image-5.3.0-53-lowlatency_5.3.0-53.47~18.04.1_amd64.debLinux
Linux kernel (USN-4369-1) linux-image-lowlatency-hwe-18.04_5.3.0.53.109_i386.debLinux
Linux kernel (USN-4369-1) linux-image-lowlatency-hwe-18.04_5.3.0.53.109_amd64.debLinux
Kernel-uek update (ELSA-2020-5913) kernel-uek-4.14.35-2025.402.2.1.el7uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2020-5913) kernel-uek-debug-4.14.35-2025.402.2.1.el7uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2020-5913) kernel-uek-debug-devel-4.14.35-2025.402.2.1.el7uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2020-5913) kernel-uek-devel-4.14.35-2025.402.2.1.el7uek.x86_64.rpmLinux
Kernel-uek-tools update (ELSA-2020-5913) kernel-uek-tools-4.14.35-2025.402.2.1.el7uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2020-5913) kernel-uek-doc-4.14.35-2025.402.2.1.el7uek.noarch.rpmLinux
Kernel-uek update (ELSA-2020-5914) kernel-uek-5.4.17-2036.100.6.1.el8uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2020-5914) kernel-uek-debug-5.4.17-2036.100.6.1.el8uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2020-5914) kernel-uek-debug-devel-5.4.17-2036.100.6.1.el8uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2020-5914) kernel-uek-devel-5.4.17-2036.100.6.1.el8uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2020-5914) kernel-uek-doc-5.4.17-2036.100.6.1.el8uek.noarch.rpmLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234