Stack Information Leak Flaw in Linux Kernel Memory Manager
CVE-2020-10773
4.4MEDIUM
What is CVE-2020-10773?
A stack information leak vulnerability exists in the Linux kernel's memory management system, particularly affecting s390 and s390x architectures. This issue arises from improper handling of data written to the /proc/sys/vm/cmm_timeout file, resulting in unintended exposure of sensitive kernel data to local users. By exploiting this flaw, an attacker could gain insights into internal kernel operations, potentially leading to further security risks.
Affected Version(s)
kernel kernel-5.4-rc6
