Integer Overflow In is_in_region Allows User Thread To Access Kernel Memory

Description

Allows a malicious userspace application to bypass security checks performed by system call handlers.

See NCC-NCC-005

Environment

None

Assignee

David Brown

Reporter

David Brown

Labels

None

Authorized viewers

Jeremy Boone

CVE

CVE-2020-10025

Embargo Lift

None

Priority

Medium
Configure