Back to bug 1824059

Who When What Removed Added
Marian Rehak 2020-04-15 08:11:32 UTC Blocks 1824060
Marian Rehak 2020-04-16 06:58:18 UTC Summary 2019-20636 kernel: an out-of-bounds write via crafted keycode table could result in remote code execution CVE-2019-20636 kernel: an out-of-bounds write via crafted keycode table could result in remote code execution
Alias 2019-20636 CVE-2019-20636
Petr Matousek 2020-04-16 10:23:54 UTC Summary CVE-2019-20636 kernel: an out-of-bounds write via crafted keycode table could result in remote code execution CVE-2019-20636 kernel: an out-of-bounds write via crafted keycode table
Steve Grubb 2020-04-17 18:37:31 UTC CC sgrubb
Eric Christensen 2020-04-17 20:29:51 UTC Doc Text An out-of-bounds write flaw was found in the Linux kernel. A crafted keycode table is used by drivers/input/input.c to perform the out-of-bounds write, as demonstrated by input_set_keycode. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Alex 2020-04-20 19:14:06 UTC CC allarkin
Petr Matousek 2020-04-21 10:28:38 UTC CC pmatouse
Flags needinfo?(allarkin)
Alex 2020-04-22 13:09:33 UTC Flags needinfo?(allarkin)
Alex 2020-04-23 12:28:39 UTC Priority high medium
Severity high medium
Alex 2020-04-23 12:36:16 UTC Doc Text An out-of-bounds write flaw was found in the Linux kernel. A crafted keycode table is used by drivers/input/input.c to perform the out-of-bounds write, as demonstrated by input_set_keycode. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. An out-of-bounds write flaw was found in the Linux kernel. A crafted keycode table is used by drivers/input/input.c to perform the out-of-bounds write, as demonstrated by uinput module usage or USB+HID stacks fuzzing. The highest threat from this vulnerability is system availability.
Alex 2020-04-23 14:14:02 UTC Doc Text An out-of-bounds write flaw was found in the Linux kernel. A crafted keycode table is used by drivers/input/input.c to perform the out-of-bounds write, as demonstrated by uinput module usage or USB+HID stacks fuzzing. The highest threat from this vulnerability is system availability. An out-of-bounds write flaw was found in the Linux kernel. A crafted keycode table could be used by drivers/input/input.c to perform the out-of-bounds write. A local user with root access can insert garbage to this keycode table. The highest threat from this vulnerability is system availability.
Alex 2020-04-26 13:45:45 UTC Doc Text An out-of-bounds write flaw was found in the Linux kernel. A crafted keycode table could be used by drivers/input/input.c to perform the out-of-bounds write. A local user with root access can insert garbage to this keycode table. The highest threat from this vulnerability is system availability. An out-of-bounds write flaw was found in the Linux kernel. A crafted keycode table could be used by drivers/input/input.c to perform the out-of-bounds write. A local user with root access can insert garbage to this keycode table that can lead to out-of-bounds memory access. The highest threat from this vulnerability is system availability.
Alex 2020-04-27 11:17:51 UTC Depends On 1828226, 1828225, 1828224, 1828222, 1828223
Alex 2020-04-28 11:36:48 UTC Doc Text An out-of-bounds write flaw was found in the Linux kernel. A crafted keycode table could be used by drivers/input/input.c to perform the out-of-bounds write. A local user with root access can insert garbage to this keycode table that can lead to out-of-bounds memory access. The highest threat from this vulnerability is system availability. An out-of-bounds write flaw was found in the Linux kernel. A crafted keycode table could be used by drivers/input/input.c to perform the out-of-bounds write. A local user with root access can insert garbage to this keycode table that can lead to out-of-bounds memory access.
Petr Matousek 2020-04-28 11:37:27 UTC Doc Text An out-of-bounds write flaw was found in the Linux kernel. A crafted keycode table could be used by drivers/input/input.c to perform the out-of-bounds write. A local user with root access can insert garbage to this keycode table that can lead to out-of-bounds memory access. An out-of-bounds write flaw was found in the Linux kernel. A crafted keycode table could be used by drivers/input/input.c to perform the out-of-bounds write. A local user with root access can insert garbage to this keycode table that can lead to out-of-bounds memory access. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Roberto Carrieri 2020-04-30 07:46:33 UTC CC rcarrier, security-response-team
Flags needinfo?(security-response-team) needinfo?(allarkin)
Yogendra Jog 2020-04-30 09:55:49 UTC Flags needinfo?(security-response-team) needinfo?(allarkin) needinfo?(rcarrier)
Michelle Kim 2020-05-01 00:02:30 UTC CC mkim
Mark Thacker 2020-05-08 13:31:05 UTC CC mthacker, nhorman
Flags needinfo?(nhorman)
errata-xmlrpc 2020-07-07 13:19:01 UTC Link ID Red Hat Product Errata RHSA-2020:2854
Product Security DevOps Team 2020-07-07 19:28:10 UTC Status NEW CLOSED
Resolution --- ERRATA
Last Closed 2020-07-07 19:28:10 UTC
Tod Herman 2020-07-08 13:25:44 UTC CC therman
Flags needinfo?(security-response-team)
Yogendra Jog 2020-07-08 16:40:18 UTC Flags needinfo?(security-response-team)
Tomas Hoger 2020-09-24 13:46:38 UTC Summary CVE-2019-20636 kernel: an out-of-bounds write via crafted keycode table CVE-2019-20636 kernel: out-of-bounds write via crafted keycode table
errata-xmlrpc 2020-09-29 18:59:46 UTC Link ID Red Hat Product Errata RHSA-2020:4062
errata-xmlrpc 2020-09-29 20:54:04 UTC Link ID Red Hat Product Errata RHSA-2020:4060
Guilherme de Almeida Suckevicz 2020-10-15 13:00:23 UTC Depends On 1888661
errata-xmlrpc 2020-10-29 15:09:01 UTC Link ID Red Hat Product Errata RHBA-2020:4417
errata-xmlrpc 2020-10-29 15:10:32 UTC Link ID Red Hat Product Errata RHBA-2020:4416
errata-xmlrpc 2020-10-29 15:12:54 UTC Link ID Red Hat Product Errata RHBA-2020:4419
errata-xmlrpc 2020-10-29 15:14:25 UTC Link ID Red Hat Product Errata RHBA-2020:4418
errata-xmlrpc 2020-10-29 15:51:45 UTC Link ID Red Hat Product Errata RHBA-2020:4420
Marc Milgram 2020-11-02 19:44:52 UTC CC mmilgram
errata-xmlrpc 2020-11-04 00:50:53 UTC Link ID Red Hat Product Errata RHSA-2020:4431
errata-xmlrpc 2020-11-04 02:23:10 UTC Link ID Red Hat Product Errata RHSA-2020:4609
Michael Kaplan 2020-11-04 11:09:54 UTC Depends On 1894486
Michael Kaplan 2020-11-04 11:11:21 UTC Depends On 1894487, 1894489, 1894490
errata-xmlrpc 2020-12-15 08:55:25 UTC Link ID Red Hat Product Errata RHSA-2020:5430
errata-xmlrpc 2020-12-22 09:32:43 UTC Link ID Red Hat Product Errata RHSA-2020:5656
errata-xmlrpc 2021-01-05 10:20:36 UTC Link ID Red Hat Product Errata RHSA-2021:0019
Roberto Carrieri 2023-08-16 09:55:37 UTC Flags needinfo?(rcarrier)
Roberto Carrieri 2023-08-16 09:56:09 UTC Flags needinfo?(nhorman)

Back to bug 1824059