CVE-2020-14304

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
15/09/2020
Last modified:
12/02/2023

Description

A memory disclosure flaw was found in the Linux kernel's ethernet drivers, in the way it read data from the EEPROM of the device. This flaw allows a local user to read uninitialized values from the kernel memory. The highest threat from this vulnerability is to confidentiality.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:4.9.210-1:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:4.19.118-2:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.6.7-1:*:*:*:*:*:*:*