CVE-2019-20172: Serenityos

High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Kernel/VM/MemoryManager.cpp in SerenityOS before 2019-12-30 does not reject syscalls with pointers into the kernel-only virtual address space, which allows local users to gain privileges by overwriting a return address that was found on the kernel stack.

Affected products

  • Serenityos Serenityos: before 2019-12-30 (fixed in 2019-12-30)

Published 2019-12-31. Last modified 2026-06-17.