An issue was discovered in the Linux kernel before 5.6.7. xdpumemreg in net/xdp/xdpumem.c has an out-of-bounds write (by a user with the CAPNET_ADMIN capability) because of a lack of headroom validation.
[
{
"deprecated": false,
"signature_version": "v1",
"target": {
"file": "net/xdp/xdp_umem.c",
"function": "xdp_umem_reg"
},
"digest": {
"length": 1695.0,
"function_hash": "22277438942184984672515193324265232641"
},
"id": "CVE-2020-12659-0be9e747",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@99e3a236dd43d06c65af0a2ef9cb44306aef6e02",
"signature_type": "Function"
},
{
"deprecated": false,
"signature_version": "v1",
"target": {
"file": "net/xdp/xdp_umem.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"249036851120542878774891426557011014770",
"42341858597901088645422808765141392278",
"151702068083814628600172496289806805049",
"317485409112967478463509726581431898379",
"191309883564104005192649423434034876033",
"209755833732475446106719990393154905641",
"33845027180301432151288188145784028115",
"111770686906484340709734220937973950436",
"63829772550311897411458575200373996988"
]
},
"id": "CVE-2020-12659-719a33d4",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@99e3a236dd43d06c65af0a2ef9cb44306aef6e02",
"signature_type": "Line"
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-12659.json"
[
{
"deprecated": false,
"signature_version": "v1",
"target": {
"file": "net/xdp/xdp_umem.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"249036851120542878774891426557011014770",
"42341858597901088645422808765141392278",
"151702068083814628600172496289806805049",
"317485409112967478463509726581431898379",
"191309883564104005192649423434034876033",
"209755833732475446106719990393154905641",
"33845027180301432151288188145784028115",
"111770686906484340709734220937973950436",
"63829772550311897411458575200373996988"
]
},
"id": "CVE-2020-12659-42f31596",
"source": "https://github.com/torvalds/linux/commit/99e3a236dd43d06c65af0a2ef9cb44306aef6e02",
"signature_type": "Line"
},
{
"deprecated": false,
"signature_version": "v1",
"target": {
"file": "net/xdp/xdp_umem.c",
"function": "xdp_umem_reg"
},
"digest": {
"length": 1695.0,
"function_hash": "22277438942184984672515193324265232641"
},
"id": "CVE-2020-12659-e28d6689",
"source": "https://github.com/torvalds/linux/commit/99e3a236dd43d06c65af0a2ef9cb44306aef6e02",
"signature_type": "Function"
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-12659.json"