Security Advisory

CVE-2020-10058

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-05-11 22:26:15
Last updated 2024-09-17 01:36:46
Assigner zephyr
State PUBLISHED

Description

Multiple syscalls in the Kscan subsystem perform insufficient argument validation, allowing code executing in userspace to potentially gain elevated privileges. See NCC-ZEP-006 This issue affects: zephyrproject-rtos zephyr version 2.1.0 and later versions.