CVE-2020-12653

Description

An issue was found in Linux kernel before 5.5.4. The mwifiex_cmd_append_vsie_tlv() function in drivers/net/wireless/marvell/mwifiex/scan.c allows local users to gain privileges or cause a denial of service because of an incorrect memcpy and buffer overflow, aka CID-b70261a288ea.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.195

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in IBM Security Guardium 11.1Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.2Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.0Windows
SUSE-SU-2020:14393-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-default-extra-3.0.101-108.114.1.i586.rpmLinux
SUSE-SU-2020:14393-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-default-extra-3.0.101-108.114.1.x86_64.rpmLinux
SUSE-SU-2020:14393-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-pae-extra-3.0.101-108.114.1.i586.rpmLinux
SUSE-SU-2020:14393-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-trace-extra-3.0.101-108.114.1.x86_64.rpmLinux
SUSE-SU-2020:14393-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-xen-extra-3.0.101-108.114.1.i586.rpmLinux
SUSE-SU-2020:14393-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-xen-extra-3.0.101-108.114.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-debuginfo-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-debuginfo-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-debugsource-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-devel-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-devel-azure-4.12.14-16.16.1.noarch.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-source-azure-4.12.14-16.16.1.noarch.rpmLinux
SUSE-SU-2020:1587-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-syms-azure-4.12.14-16.16.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-base-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-base-debuginfo-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-debuginfo-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-debugsource-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-azure-devel-4.12.14-6.43.1.x86_64.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-devel-azure-4.12.14-6.43.1.noarch.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-source-azure-4.12.14-6.43.1.noarch.rpmLinux
SUSE-SU-2020:1603-1(SUSE Linux Enterprise Server 12-SP4 ) kernel-syms-azure-4.12.14-6.43.1.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update bpftool-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-abi-whitelists-4.18.0-193.13.2.el8_2.noarch.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-core-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-cross-headers-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-debug-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-debug-core-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-debug-devel-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-debug-modules-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-debug-modules-extra-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-devel-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-doc-4.18.0-193.13.2.el8_2.noarch.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-headers-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-modules-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-modules-extra-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-tools-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update kernel-tools-libs-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update perf-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3010) kernel security, bug fix, and enhancement update python3-perf-4.18.0-193.13.2.el8_2.x86_64.rpmLinux
(RHSA-2020:3220) kernel security and bug fix update bpftool-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(RHSA-2020:3220) kernel security and bug fix update kernel-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(RHSA-2020:3220) kernel security and bug fix update kernel-abi-whitelists-3.10.0-1127.18.2.el7.noarch.rpmLinux
(RHSA-2020:3220) kernel security and bug fix update kernel-debug-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(RHSA-2020:3220) kernel security and bug fix update kernel-debug-devel-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(RHSA-2020:3220) kernel security and bug fix update kernel-devel-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(RHSA-2020:3220) kernel security and bug fix update kernel-doc-3.10.0-1127.18.2.el7.noarch.rpmLinux
(RHSA-2020:3220) kernel security and bug fix update kernel-headers-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(RHSA-2020:3220) kernel security and bug fix update kernel-tools-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(RHSA-2020:3220) kernel security and bug fix update kernel-tools-libs-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(RHSA-2020:3220) kernel security and bug fix update kernel-tools-libs-devel-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(RHSA-2020:3220) kernel security and bug fix update perf-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(RHSA-2020:3220) kernel security and bug fix update python-perf-3.10.0-1127.18.2.el7.x86_64.rpmLinux
Kernel-uek update (ELSA-2021-9030) kernel-uek-4.1.12-124.47.3.el6uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2021-9030) kernel-uek-debug-4.1.12-124.47.3.el6uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2021-9030) kernel-uek-debug-devel-4.1.12-124.47.3.el6uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2021-9030) kernel-uek-devel-4.1.12-124.47.3.el6uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2021-9030) kernel-uek-doc-4.1.12-124.47.3.el6uek.noarch.rpmLinux
Kernel-uek-firmware update (ELSA-2021-9030) kernel-uek-firmware-4.1.12-124.47.3.el6uek.noarch.rpmLinux
Kernel-uek update (ELSA-2021-9030) kernel-uek-4.1.12-124.47.3.el7uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2021-9030) kernel-uek-debug-4.1.12-124.47.3.el7uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2021-9030) kernel-uek-debug-devel-4.1.12-124.47.3.el7uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2021-9030) kernel-uek-devel-4.1.12-124.47.3.el7uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2021-9030) kernel-uek-doc-4.1.12-124.47.3.el7uek.noarch.rpmLinux
Kernel-uek-firmware update (ELSA-2021-9030) kernel-uek-firmware-4.1.12-124.47.3.el7uek.noarch.rpmLinux
(CESA-2020:3220) kernel security and bug fix update bpftool-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(CESA-2020:3220) kernel security and bug fix update kernel-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(CESA-2020:3220) kernel security and bug fix update kernel-abi-whitelists-3.10.0-1127.18.2.el7.noarch.rpmLinux
(CESA-2020:3220) kernel security and bug fix update kernel-debug-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(CESA-2020:3220) kernel security and bug fix update kernel-debug-devel-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(CESA-2020:3220) kernel security and bug fix update kernel-devel-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(CESA-2020:3220) kernel security and bug fix update kernel-doc-3.10.0-1127.18.2.el7.noarch.rpmLinux
(CESA-2020:3220) kernel security and bug fix update kernel-headers-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(CESA-2020:3220) kernel security and bug fix update kernel-tools-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(CESA-2020:3220) kernel security and bug fix update kernel-tools-libs-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(CESA-2020:3220) kernel security and bug fix update kernel-tools-libs-devel-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(CESA-2020:3220) kernel security and bug fix update perf-3.10.0-1127.18.2.el7.x86_64.rpmLinux
(CESA-2020:3220) kernel security and bug fix update python-perf-3.10.0-1127.18.2.el7.x86_64.rpmLinux
Out-of-bounds Write Vulnerability (CVE-2020-12653)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234