CVE-2020-35519: Linux Kernel
High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.
An out-of-bounds (OOB) memory access flaw was found in x25_bind in net/x25/af_x25.c in the Linux kernel version v5.12-rc5. A bounds check failure allows a local attacker with a user account on the system to gain access to out-of-bounds memory, leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
Affected products
- Linux Linux Kernel: from 2.6.12, before 4.4.248 (fixed in 4.4.248); from 4.5, before 4.9.248 (fixed in 4.9.248); from 4.10, before 4.14.211 (fixed in 4.14.211); from 4.15, before 4.19.162 (fixed in 4.19.162); from 4.20, before 5.4.82 (fixed in 5.4.82); from 5.5, before 5.9.13 (fixed in 5.9.13)
- Netapp Cloud Backup: affected versions not specified
- Netapp h300e Firmware: affected versions not specified
- Netapp h300s Firmware: affected versions not specified
- Netapp h410c Firmware: affected versions not specified
- Netapp h410s Firmware: affected versions not specified
- Netapp h500e Firmware: affected versions not specified
- Netapp h500s Firmware: affected versions not specified
- Netapp h700e Firmware: affected versions not specified
- Netapp h700s Firmware: affected versions not specified
- Netapp Solidfire Baseboard Management Controller Firmware: affected versions not specified
Published 2021-05-06. Last modified 2026-06-17.