CVE-2020-12769Medium· 5.5▾ SunlitAn issue was discovered in the Linux kernel before 5.4.17. drivers/spi/spi-dw.c allows attackers to cause a panic via concurrent calls to dw_spi_irq and dw_spi_transfer_one, aka CID-19b61392c5a8.
▾ Sunlit zone — Low / medium · no exploitation signal
impact 30.3 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.7%
An issue was discovered in the Linux kernel before 5.4.17. drivers/spi/spi-dw.c allows attackers to cause a panic via concurrent calls to dw_spi_irq and dw_spi_transfer_one, aka CID-19b61392c5a8.
linux_kernel < 5.4.17debian_linux = 8.0ubuntu_linux = 14.04ubuntu_linux = 16.04leap = 15.1leap = 15.2active_iq_unified_managercloud_backupelement_softwarehci_management_nodesolidfiresteelstore_cloud_integrated_storagehci_compute_node_firmwarea700s_firmwareh300s_firmwareh500s_firmwareh700s_firmwareh300e_firmwareh500e_firmwareh700e_firmwareh410s_firmwareh410c_firmwareh610c_firmwareh610s_firmwareh615c_firmwareUpgrade past the affected range:
linux_kernel 5.4.17Connected by shared product, vendor, weakness, or advisory.
CVE-2019-19462Medium· 5.5relay_open in kernel/relay.c in the Linux kernel through 5.4.1 allows local users to cause a denial of service (such as relay blockage) by triggering a NULL alloc_percpu result.
CVE-2019-19965Medium· 4.7In the Linux kernel through 5.4.6, there is a NULL pointer dereference in drivers/scsi/libsas/sas_discover.c because of mishandling of port disconnection during discovery, related to a PHY down race condition, aka CID-f70267f379b5.
CVE-2019-20095Medium· 5.5mwifiex_tm_cmd in drivers/net/wireless/marvell/mwifiex/cfg80211.c in the Linux kernel before 5.1.6 has some error-handling cases that did not free allocated hostcmd memory, aka CID-003b686ace82
CVE-2019-19054Medium· 4.7A memory leak in the cx23888_ir_probe() function in drivers/media/pci/cx23885/cx23888-ir.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering kfifo_alloc() failures, aka CI…
CVE-2019-15218Medium· 4.6An issue was discovered in the Linux kernel before 5.1.8
CVE-2019-15219Medium· 4.6An issue was discovered in the Linux kernel before 5.1.8