Integer Overflow In is_in_region Allows User Thread To Access Kernel Memory
Vulnerability Description
A malicious userspace application can cause a integer overflow and bypass security checks performed by system call handlers. The impact would depend on the underlying system call and can range from denial of service to information leak to memory corruption resulting in code execution within the kernel. See NCC-ZEP-005 This issue affects: zephyrproject-rtos zephyr version 1.14.1 and later versions. version 2.1.0 and later versions.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-10067
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- NCC Group for report
References
- https://zephyrprojectsec.atlassian.net/browse/ZEPSEC-27
- https://github.com/zephyrproject-rtos/zephyr/pull/23239
- https://github.com/zephyrproject-rtos/zephyr/pull/23653
- https://github.com/zephyrproject-rtos/zephyr/pull/23654
- https://docs.zephyrproject.org/latest/security/vulnerabilities.html#cve-2020-10067
More from zephyrproject-rtos
View All →Affected Vendor
zephyrproject-rtos
View all reports →