PT-2020-1254 · Linux+6 · Linux Kernel+6

Published

2020-06-09

·

Updated

2024-06-15

·

CVE-2020-10768

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Linux Kernel versions prior to 5.8-rc1
Description A flaw in the prctl() function allows indirect branch speculation to be enabled after it has been disabled, incorrectly reporting it as 'force disabled' when it is not. This opens the system to Spectre v2 attacks, which could lead to local information disclosure with no additional execution privileges needed. The issue is related to insufficient input validation and incorrect implementation of functions. User interaction is not needed for exploitation, and the highest threat from this vulnerability is to confidentiality.
Recommendations For Linux Kernel versions prior to 5.8-rc1, consider disabling the prctl() function or restricting its use to minimize the risk of exploitation until a patch is available. As a temporary workaround, avoid using the prctl() function to enable indirect branch speculation. Restrict access to sensitive information to prevent potential disclosure via a Spectre v2 attack.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2020-2688
ALT-PU-2020-2716
ALT-PU-2020-2770
ALT-PU-2020-3210
ALT-PU-2021-1083
ALT-PU-2021-1105
ALT-PU-2021-1621
ALT-PU-2021-1656
ALT-PU-2021-1739
ALT-PU-2021-1862
ALT-PU-2021-1866
ALT-PU-2021-1870
ASB-A-169505929
BDU:2020-03245
CESA-2020_3010
CESA-2020_3016
CESA-2020_3073
CVE-2020-10768
DLA-2323-1
MGASA-2020-0333
OPENSUSE-SU-2020:0935-1
OPENSUSE-SU-2020:1153-1
OPENSUSE-SU-2020_0935-1
OPENSUSE-SU-2020_1153-1
OPENSUSE-SU-2021:0242-1
OPENSUSE-SU-2021_0242-1
OPENSUSE-SU-2024:10728-1
OPENSUSE-SU-2024:13704-1
RHSA-2020:3010
RHSA-2020:3016
RHSA-2020:3041
RHSA-2020:3073
RHSA-2020:3222
RHSA-2020:3297
RHSA-2020_3010
RHSA-2020_3016
SUSE-SU-2020:1693-1
SUSE-SU-2020:1699-1
SUSE-SU-2020:1713-1
SUSE-SU-2020:2027-1
SUSE-SU-2020:2103-1
SUSE-SU-2020:2105-1
SUSE-SU-2020:2106-1
SUSE-SU-2020:2107-1
SUSE-SU-2020:2121-1
SUSE-SU-2020:2134-1
SUSE-SU-2020:2156-1
SUSE-SU-2020:2478-1
SUSE-SU-2020:2487-1
USN-4427-1
USN-4439-1
USN-4440-1
USN-4483-1
USN-4485-1

Affected Products

Alt Linux
Centos
Linux Kernel
Linuxmint
Red Hat
Suse
Ubuntu