CVE-2020-29373: Linux Kernel
Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.
An issue was discovered in fs/io_uring.c in the Linux kernel before 5.6. It unsafely handles the root directory during path lookups, and thus a process inside a mount namespace can escape to unintended filesystem locations, aka CID-ff002b30181d.
Affected products
- Linux Linux Kernel: before 5.6 (fixed in 5.6)
Published 2020-11-28. Last modified 2026-06-17.