← Back

CVE-2020-25643

nvd nist
Published: Oct 6, 2020Modified: Jun 17, 2026

JSON object

Loading...
7.2
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.2 / Impact: 5.9
Source: NVD

Description

A flaw was found in the HDLC_PPP module of the Linux kernel in versions before 5.9-rc7. Memory corruption and a read overflow is caused by improper input validation in the ppp_cp_parse_cr function which can cause the system to crash or cause a denial of service. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Affected (25)

Products: Linux: Linux Kernel · Redhat: Enterprise Linux · Opensuse: Leap · +3 more
Show all products
1 product
Linux Kernel
1 product
Enterprise Linux
1 product
Leap
1 product
Debian Linux
1 product
H410c Firmware
Starwind Virtual San
Configuration A
12 vulnerable
Vulnerable SoftwareAffected Versions
Linux
From 2.6.29 to 4.4.238
From 4.10 to 4.14.200
From 4.15 to 4.19.148
From 4.20 to 5.4.68
From 4.5 to 4.9.238
From 5.5 to 5.8.12
Version 5.9.0 rc1
Version 5.9.0 rc2
Version 5.9.0 rc3
Version 5.9.0 rc4
Version 5.9.0 rc5
Version 5.9.0 rc6
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Redhat
Version 7.0
Version 8.0
Configuration C
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 15.1
Configuration D
2 vulnerable
Vulnerable SoftwareAffected Versions
Debian
Version 10.0
Version 9.0
Configuration E
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 15.2
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H410c
All versions
Configuration G
6 vulnerable
Vulnerable SoftwareAffected Versions
Starwindsoftware
Version v8 build12533
Version v8 build12658
Version v8 build12859
Version v8 build13170
Version v8 build13586
Version v8 build13861

References (20)

Source: secalert@redhat.com
Mailing ListThird Party Advisory
Source: secalert@redhat.com
Issue TrackingPatchThird Party Advisory
Source: secalert@redhat.com
Mailing ListThird Party Advisory
Source: secalert@redhat.com
Mailing ListThird Party Advisory
Source: secalert@redhat.com
Mailing ListThird Party Advisory
Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingPatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListPatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.