gdisk: possible out-of-bounds-write in LoadPartitionTable of gpt.cc
Published Aug 11, 2020
6.8
MEDIUMCVSS 3.1
EPSS 0.21%
Description
In LoadPartitionTable of gpt.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege when inserting a malicious USB device, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-8.0Android ID: A-152874864
Affected products
- Vendor n/a Product Android Defaultn/a
- Version Android-8.1 Android-9 Android-10 Android-8.0StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| n/a | Android | n/a |
|
No data.
Red Hat Enterprise Linux 8
gdisk-0:1.0.3-11.el8
Fixed · RHSA-2022:7700
Red Hat Enterprise Linux 8.6 Extended Update Support
gdisk-0:1.0.3-9.el8_6.1
Fixed · RHSA-2024:3486
Red Hat Enterprise Linux 6
gdisk
Out of support scope
Red Hat Enterprise Linux 7
gdisk
Out of support scope
Red Hat Enterprise Linux 9
gdisk
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 8 | gdisk-0:1.0.3-11.el8 | Fixed | RHSA-2022:7700 |
| Red Hat Enterprise Linux 8.6 Extended Update Support | gdisk-0:1.0.3-9.el8_6.1 | Fixed | RHSA-2024:3486 |
| Red Hat Enterprise Linux 6 | gdisk | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | gdisk | Out of support scope | n/a |
| Red Hat Enterprise Linux 9 | gdisk | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
This vulnerability does affect Red Hat Enterprise Linux 6, 7, and 8 because our code-base is vulnerable to this issue. Red Hat Product Security has rated this issue as a Moderate security impact and the issue is not currently planned to be addressed in future updates for Red Hat Enterprise Linux 6 and 7, hence, marked as Out-of-Support-Scope. For additional information, refer to the Red Hat Enterprise Linux Life Cycle & Update Policy: https://access.redhat.com/support/policy/updates/errata/.
References (6)
- https://access.redhat.com/security/cve/CVE-2020-0256 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2051939 Issue Tracking
- https://lists.debian.org/debian-lts-announce/2021/02/msg00010.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2020-0256
- https://source.android.com/security/bulletin/2020-08-01 x_refsource_MISCVendor Advisory
- https://www.cve.org/CVERecord?id=CVE-2020-0256
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2020-0256 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2051939 | Issue Tracking | |
| https://lists.debian.org/debian-lts-announce/2021/02/msg00010.html | mailing-listx_refsource_MLISTMailing ListThird Party Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2020-0256 | ||
| https://source.android.com/security/bulletin/2020-08-01 | x_refsource_MISCVendor Advisory | |
| https://www.cve.org/CVERecord?id=CVE-2020-0256 |
Change history (0)
No recorded changes yet.