CVE-2020-10774: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A memory disclosure flaw was found in the Linux kernel's versions before 4.18.0-193.el8 in the sysctl subsystem when reading the /proc/sys/kernel/rh_features file. This flaw allows a local user to read uninitialized values from the kernel memory. The highest threat from this vulnerability is to confidentiality.

Affected products

  • Linux Linux Kernel: before 4.18.0-193.el8 (fixed in 4.18.0-193.el8)

Published 2021-05-27. Last modified 2026-06-17.