Rewterz
Rewterz Threat Alert – AgentTesla Information Stealer – Fresh IoCs
January 8, 2021
Rewterz
Rewterz Threat Alert – APT C-35 (Donot Team)
January 11, 2021

Rewterz Threat Advisory – CVE-2020-27835 – Linux Kernel denial of service

Severity

Medium

Analysis Summary

CVE-2020-27835

Linux Kernel is vulnerable to a denial of service, caused by a use-after-free in the infiniband hfi1 driver. By sending a specially-crafted request, a local attacker could exploit this vulnerability to cause the system to crash.

Impact

Denial of Service

Affected Vendors

Linux

Affected Products

Linux Kernel 5.10

Remediation

Refer to Linux Kernel GIT Repository for patch, upgrade or suggested workaround information.

Linux Kernel GIT Repository