CVE-2020-14305: Linux Kernel
High severity, CVSS 8.1. EPSS: 5.2% chance of exploitation in the next 30 days.
An out-of-bounds memory write flaw was found in how the Linux kernel’s Voice Over IP H.323 connection tracking functionality handled connections on ipv6 port 1720. This flaw allows an unauthenticated remote user to crash the system, causing a denial of service. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
Affected products
- Linux Linux Kernel: up to and including 4.11.12; version 4.12 only
- Netapp a250 Firmware: affected versions not specified
- Netapp Aff 500f Firmware: affected versions not specified
- Netapp Cloud Backup: affected versions not specified
- Netapp Fas 500f Firmware: affected versions not specified
- Netapp Solidfire Baseboard Management Controller Firmware: affected versions not specified
Published 2020-12-02. Last modified 2026-06-17.