CVE-2020-36791: Linux Kernel

High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: net_sched: keep alloc_hash updated after hash allocation In commit 599be01ee567 ("net_sched: fix an OOB access in cls_tcindex") I moved cp->hash calculation before the first tcindex_alloc_perfect_hash(), but cp->alloc_hash is left untouched. This difference could lead to another out of bound access. cp->alloc_hash should always be the size allocated, we should update it after this tcindex_alloc_perfect_hash().

Affected products

  • Linux Linux Kernel: from 4.4.214, before 4.4.218 (fixed in 4.4.218); from 4.9.214, before 4.9.218 (fixed in 4.9.218); from 4.14.171, before 4.14.175 (fixed in 4.14.175); from 4.19.103, before 4.19.114 (fixed in 4.19.114); from 5.4.19, before 5.4.29 (fixed in 5.4.29); from 5.5.3, before 5.5.14 (fixed in 5.5.14); …

Published 2025-05-07. Last modified 2026-08-04.