[PATCH 0/1] [SRU] [focal/linux-oem-5.6] CVE-2020-25669

Tim Gardner tim.gardner at canonical.com
Thu Mar 11 19:48:43 UTC 2021


[Impact]
[use-after-free in sunkbd_reinit]

>From the Ubuntu security team:
Bodong Zhao discovered a use-after-free in the Sun keyboard driver
implementation in the Linux kernel. A local attacker could use this
to cause a denial of service or possibly execute arbitrary code.

[Test Case]
none

[Potential regression]
Patch released in 
linux-4.14.y
linux-4.19.y
linux-4.4.y
linux-4.9.y
linux-5.4.y
linux-5.9.y





More information about the kernel-team mailing list