---
id: CVE-2020-14390
title: A flaw was found in the Linux kernel in versions before 5.9-rc6
summary: >-
  A flaw was found in the Linux kernel in versions before 5.9-rc6. When changing
  screen size, an out-of-bounds memory write can occur leading to memory
  corruption or a denial of service. Due to the nature of the flaw, privilege
  escalation …
severity: medium
cvss: 5.6
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:H'
cwe:
  - CWE-787
  - CWE-787
vendor: linux
product: linux_kernel
affected:
  - 'linux_kernel >= 2.2.3, < 5.9.0'
  - linux_kernel = 5.9.0
  - debian_linux = 9.0
patched:
  - linux_kernel 5.9.0
published: '2020-09-18'
updated: '2026-10-08'
sourceUpdated: '2026-10-08T21:17:23.590'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2020-14390'
references:
  - url: 'http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00001.html'
    label: secalert@redhat.com
  - url: 'http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00021.html'
    label: secalert@redhat.com
  - url: 'https://bugzilla.redhat.com/show_bug.cgi?id=1876788'
    label: secalert@redhat.com
  - url: 'https://lists.debian.org/debian-lts-announce/2020/10/msg00032.html'
    label: secalert@redhat.com
  - url: 'https://lists.debian.org/debian-lts-announce/2020/10/msg00034.html'
    label: secalert@redhat.com
  - url: 'http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00001.html'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00021.html'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://bugzilla.redhat.com/show_bug.cgi?id=1876788'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://lists.debian.org/debian-lts-announce/2020/10/msg00032.html'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://lists.debian.org/debian-lts-announce/2020/10/msg00034.html'
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
epss: 0.00352
epssPercentile: 0.26723
ingestedAt: '2026-10-08T22:11:53.721Z'
---

## Overview

A flaw was found in the Linux kernel in versions before 5.9-rc6. When changing screen size, an out-of-bounds memory write can occur leading to memory corruption or a denial of service. Due to the nature of the flaw, privilege escalation cannot be fully ruled out.

## Affected

- `linux_kernel >= 2.2.3, < 5.9.0`
- `linux_kernel = 5.9.0`
- `debian_linux = 9.0`

## Remediation

Upgrade past the affected range:

- `linux_kernel 5.9.0`
