Vulnerabilities > CVE-2020-27820 - Use After Free vulnerability in multiple products

047910
CVSS 4.7 - MEDIUM
Attack vector
LOCAL
Attack complexity
HIGH
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH

Summary

A vulnerability was found in Linux kernel, where a use-after-frees in nouveau's postclose() handler could happen if removing device (that is not common to remove video card physically without power-off, but same happens if "unbind" the driver).

Vulnerable Configurations

Part Description Count
OS
Linux
4126
OS
Fedoraproject
1
Application
Oracle
3

Common Weakness Enumeration (CWE)