PT-2020-5131 · Linux+2 · Linux Kernel+2

Anatoly Trosinenko

+2

·

Published

2020-03-30

·

Updated

2025-09-29

·

CVE-2020-8835

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions 5.4.7 through 5.4.28 Linux kernel versions 5.5.0 through 5.5.13 Linux kernel versions 5.6.0 through 5.6.0
Description The vulnerability is related to the bpf verifier in the Linux kernel, which did not properly restrict the register bounds for 32-bit operations, leading to out-of-bounds reads and writes in kernel memory. This issue affects the Linux 5.4 stable series and newer versions. The vulnerability can be exploited to escalate privileges, allowing an attacker to gain root access. A working exploit exists but has not been publicly released. The vulnerability is present in the eBPF subsystem, which allows running handlers for tracing, analyzing subsystems, and managing traffic within the kernel.
Recommendations For Linux kernel versions 5.4.7 through 5.4.28, update to version 5.4.29 or later. For Linux kernel versions 5.5.0 through 5.5.13, update to version 5.5.14 or later. For Linux kernel versions 5.6.0 through 5.6.0, update to version 5.6.1 or later. As a temporary workaround, consider restricting access to the eBPF subsystem to minimize the risk of exploitation.

Exploit

Fix

Out of bounds Read

Buffer Overflow

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2020-1671
ALT-PU-2020-1673
ALT-PU-2020-1689
ALT-PU-2020-1704
ALT-PU-2020-1710
ALT-PU-2020-1763
ALT-PU-2020-2164
BDU:2020-05727
CVE-2020-8835
ELSA-2020-5663
MGASA-2020-0156
MGASA-2020-0158
USN-4313-1
ZDI-20-350

Affected Products

Alt Linux
Linux Kernel
Ubuntu