CVE-2020-8832
Severity CVSS v4.0:
Pending analysis
Type:
CWE-200
Information Leak / Disclosure
Publication date:
10/04/2020
Last modified:
09/11/2023
Description
The fix for the Linux kernel in Ubuntu 18.04 LTS for CVE-2019-14615 ("The Linux kernel did not properly clear data structures on context switches for certain Intel graphics processors.") was discovered to be incomplete, meaning that in versions of the kernel before 4.15.0-91.92, an attacker could use this vulnerability to expose sensitive information.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Base Score 2.0
2.10
Severity 2.0
LOW
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:* | ||
cpe:2.3:a:netapp:cloud_backup:-:*:*:*:*:*:*:* | ||
cpe:2.3:a:netapp:solidfire_\&_hci_management_node:-:*:*:*:*:*:*:* | ||
cpe:2.3:a:netapp:steelstore_cloud_integrated_storage:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:netapp:aff_8300_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:netapp:aff_8300:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:netapp:aff_8700_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:netapp:aff_8700:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:netapp:aff_a220_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:netapp:aff_a220:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:netapp:aff_a320_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:netapp:aff_a320:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:netapp:aff_a400_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:netapp:aff_a400:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:netapp:aff_a700s_firmware:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page