CVE-2020-27786

CVE-2020-27786

A flaw was found in the Linux kernels implementation of MIDI (kernel 5.7-rc6), where an attacker with a local account and the permissions to issue an ioctl commands to midi devices, could trigger a use-after-free. A write to this specific memory while freed and before use could cause the flow of execution to change and possibly allow for memory corruption or privilege escalation.

Source: CVE-2020-27786

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다