CVE-2020-25669

Source
https://cve.org/CVERecord?id=CVE-2020-25669
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-25669.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2020-25669
Downstream
Related
Withdrawn
2026-01-27T04:16:56.342897Z
Published
2021-05-26T12:15:15Z
Modified
2026-01-27T04:16:56.342897Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

A vulnerability was found in the Linux Kernel where the function sunkbdreinit having been scheduled by sunkbdinterrupt before sunkbd being freed. Though the dangling pointer is set to NULL in sunkbddisconnect, there is still an alias in sunkbdreinit causing Use After Free.

References

Affected packages