CVE-2020-14331

Description

A flaw was found in the Linux kernels implementation of the invert video code on VGA consoles when a local attacker attempts to resize the console, calling an ioctl VT_RESIZE, which causes an out-of-bounds write to occur. This flaw allows a local user with access to the VGA console to crash the system, potentially escalating their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Risk Information

Base Score
6.6
MODERATE
Vector
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.025

Associated Vulnerability

VulnerabilityOS Platform
SUSE-SU-2020:2119-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-4.12.14-16.22.1.x86_64.rpmLinux
SUSE-SU-2020:2119-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-4.12.14-16.22.1.x86_64.rpmLinux
SUSE-SU-2020:2119-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-debuginfo-4.12.14-16.22.1.x86_64.rpmLinux
SUSE-SU-2020:2119-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-debuginfo-4.12.14-16.22.1.x86_64.rpmLinux
SUSE-SU-2020:2119-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-debugsource-4.12.14-16.22.1.x86_64.rpmLinux
SUSE-SU-2020:2119-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-devel-4.12.14-16.22.1.x86_64.rpmLinux
SUSE-SU-2020:2119-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-devel-azure-4.12.14-16.22.1.noarch.rpmLinux
SUSE-SU-2020:2119-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-source-azure-4.12.14-16.22.1.noarch.rpmLinux
SUSE-SU-2020:2119-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-syms-azure-4.12.14-16.22.1.x86_64.rpmLinux
SUSE-SU-2020:2122-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-4.12.14-122.29.1.x86_64.rpmLinux
SUSE-SU-2020:2122-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-base-4.12.14-122.29.1.x86_64.rpmLinux
SUSE-SU-2020:2122-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-base-debuginfo-4.12.14-122.29.1.x86_64.rpmLinux
SUSE-SU-2020:2122-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-debuginfo-4.12.14-122.29.1.x86_64.rpmLinux
SUSE-SU-2020:2122-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-debugsource-4.12.14-122.29.1.x86_64.rpmLinux
SUSE-SU-2020:2122-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-devel-4.12.14-122.29.1.x86_64.rpmLinux
SUSE-SU-2020:2122-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-devel-debuginfo-4.12.14-122.29.1.x86_64.rpmLinux
SUSE-SU-2020:2122-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-devel-4.12.14-122.29.1.noarch.rpmLinux
SUSE-SU-2020:2122-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-macros-4.12.14-122.29.1.noarch.rpmLinux
SUSE-SU-2020:2122-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-source-4.12.14-122.29.1.noarch.rpmLinux
SUSE-SU-2020:2122-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-syms-4.12.14-122.29.1.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update bpftool-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-abi-whitelists-4.18.0-193.28.1.el8_2.noarch.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-core-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-cross-headers-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-debug-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-debug-core-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-debug-devel-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-debug-modules-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-debug-modules-extra-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-devel-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-doc-4.18.0-193.28.1.el8_2.noarch.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-headers-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-modules-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-modules-extra-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-tools-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update kernel-tools-libs-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update perf-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:4286) kernel security and bug fix update python3-perf-4.18.0-193.28.1.el8_2.x86_64.rpmLinux
(RHSA-2020:5023) kernel security and bug fix update bpftool-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(RHSA-2020:5023) kernel security and bug fix update kernel-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(RHSA-2020:5023) kernel security and bug fix update kernel-abi-whitelists-3.10.0-1160.6.1.el7.noarch.rpmLinux
(RHSA-2020:5023) kernel security and bug fix update kernel-debug-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(RHSA-2020:5023) kernel security and bug fix update kernel-debug-devel-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(RHSA-2020:5023) kernel security and bug fix update kernel-devel-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(RHSA-2020:5023) kernel security and bug fix update kernel-doc-3.10.0-1160.6.1.el7.noarch.rpmLinux
(RHSA-2020:5023) kernel security and bug fix update kernel-headers-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(RHSA-2020:5023) kernel security and bug fix update kernel-tools-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(RHSA-2020:5023) kernel security and bug fix update kernel-tools-libs-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(RHSA-2020:5023) kernel security and bug fix update kernel-tools-libs-devel-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(RHSA-2020:5023) kernel security and bug fix update perf-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(RHSA-2020:5023) kernel security and bug fix update python-perf-3.10.0-1160.6.1.el7.x86_64.rpmLinux
Bpftool update (ELSA-2020-5023) bpftool-3.10.0-1160.6.1.el7.x86_64.rpmLinux
Kernel update (ELSA-2020-5023) kernel-3.10.0-1160.6.1.el7.x86_64.rpmLinux
Kernel-debug update (ELSA-2020-5023) kernel-debug-3.10.0-1160.6.1.el7.x86_64.rpmLinux
Kernel-debug-devel update (ELSA-2020-5023) kernel-debug-devel-3.10.0-1160.6.1.el7.x86_64.rpmLinux
Kernel-devel update (ELSA-2020-5023) kernel-devel-3.10.0-1160.6.1.el7.x86_64.rpmLinux
Kernel-headers update (ELSA-2020-5023) kernel-headers-3.10.0-1160.6.1.el7.x86_64.rpmLinux
Kernel-tools update (ELSA-2020-5023) kernel-tools-3.10.0-1160.6.1.el7.x86_64.rpmLinux
Kernel-tools-libs update (ELSA-2020-5023) kernel-tools-libs-3.10.0-1160.6.1.el7.x86_64.rpmLinux
Kernel-tools-libs-devel update (ELSA-2020-5023) kernel-tools-libs-devel-3.10.0-1160.6.1.el7.x86_64.rpmLinux
Perf update (ELSA-2020-5023) perf-3.10.0-1160.6.1.el7.x86_64.rpmLinux
Python-perf update (ELSA-2020-5023) python-perf-3.10.0-1160.6.1.el7.x86_64.rpmLinux
Kernel-abi-whitelists update (ELSA-2020-5023) kernel-abi-whitelists-3.10.0-1160.6.1.el7.noarch.rpmLinux
Kernel-doc update (ELSA-2020-5023) kernel-doc-3.10.0-1160.6.1.el7.noarch.rpmLinux
Dtrace-modules-3.8.13-118.49.1.el6uek update (ELSA-2020-5841) dtrace-modules-3.8.13-118.49.1.el6uek-0.4.5-3.el6.x86_64.rpmLinux
Dtrace-modules-3.8.13-118.49.1.el7uek update (ELSA-2020-5841) dtrace-modules-3.8.13-118.49.1.el7uek-0.4.5-3.el7.x86_64.rpmLinux
(CESA-2020:5023) kernel security and bug fix update bpftool-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(CESA-2020:5023) kernel security and bug fix update kernel-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(CESA-2020:5023) kernel security and bug fix update kernel-abi-whitelists-3.10.0-1160.6.1.el7.noarch.rpmLinux
(CESA-2020:5023) kernel security and bug fix update kernel-debug-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(CESA-2020:5023) kernel security and bug fix update kernel-debug-devel-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(CESA-2020:5023) kernel security and bug fix update kernel-devel-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(CESA-2020:5023) kernel security and bug fix update kernel-doc-3.10.0-1160.6.1.el7.noarch.rpmLinux
(CESA-2020:5023) kernel security and bug fix update kernel-headers-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(CESA-2020:5023) kernel security and bug fix update kernel-tools-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(CESA-2020:5023) kernel security and bug fix update kernel-tools-libs-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(CESA-2020:5023) kernel security and bug fix update kernel-tools-libs-devel-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(CESA-2020:5023) kernel security and bug fix update perf-3.10.0-1160.6.1.el7.x86_64.rpmLinux
(CESA-2020:5023) kernel security and bug fix update python-perf-3.10.0-1160.6.1.el7.x86_64.rpmLinux
kernel Security Update (ALAS-2020-1495) kernel-livepatch-4.14.198-152.320-1.0-0.amzn2.x86_64.rpmLinux
Out-of-bounds Write Vulnerability (CVE-2020-14331)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234