Skip to content

kernel CVE-2020-14351

Moderate
etungsten published GHSA-g44w-2vcw-48f7 Jan 15, 2021

Package

kernel (bottlerocket)

Affected versions

< 1.0.5

Patched versions

1.0.5

Description

A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly escalate privileges.

Severity

Moderate

CVE ID

CVE-2020-14351

Weaknesses

No CWEs