Back to bug 1879981

Who When What Removed Added
Guilherme de Almeida Suckevicz 2020-09-17 14:01:23 UTC CC security-response-team
Guilherme de Almeida Suckevicz 2020-09-17 14:03:27 UTC Blocks 1878235
Alex 2020-09-23 18:34:51 UTC Doc Text A flaw memory corruption in the Linux kernel HDLC_PPP module was found in the way receiving malformed packet by PPP protocol.
A remote user could use this flaw to crash the system or causing denial of service.
Alex 2020-09-23 18:37:28 UTC Depends On 1882079, 1882082, 1882078, 1882080, 1882081
Alex 2020-09-30 13:06:03 UTC Deadline 2020-09-10 2020-09-25
Alex 2020-09-30 13:06:39 UTC Group security, qe_staff
CC airlied, bskeggs, hdegoede, ichavero, itamar, jarodwilson, jeremy, jforbes, jglisse, john.j5live, jonathan, josef, jwboyer, kernel-maint, kernel-mgr, linville, masami256, mchehab, mjg59, rt-maint, steved
Deadline 2020-09-25
Summary EMBARGOED kernel: improper input validation in ppp_cp_parse_cr function leads to memory corruption and read overflow kernel: improper input validation in ppp_cp_parse_cr function leads to memory corruption and read overflow
Alex 2020-09-30 13:08:07 UTC Depends On 1883886
Guilherme de Almeida Suckevicz 2020-10-01 14:09:21 UTC Summary kernel: improper input validation in ppp_cp_parse_cr function leads to memory corruption and read overflow CVE-2020-25643 kernel: improper input validation in ppp_cp_parse_cr function leads to memory corruption and read overflow
Alias CVE-2020-25643
Alex 2020-10-04 19:30:28 UTC Fixed In Version Linux kernel 5.9-rc7
Eric Christensen 2020-10-06 19:23:24 UTC Doc Text A flaw memory corruption in the Linux kernel HDLC_PPP module was found in the way receiving malformed packet by PPP protocol.
A remote user could use this flaw to crash the system or causing denial of service.
A flaw was found in the HDLC_PPP module of the Linux kernel. Memory corruption and a read overflow is caused by improper input validation in the ppp_cp_parse_cr function which can cause the system to crash or cause a denial of service. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
errata-xmlrpc 2020-12-15 11:12:28 UTC Link ID Red Hat Product Errata RHSA-2020:5437
errata-xmlrpc 2020-12-15 11:17:27 UTC Link ID Red Hat Product Errata RHSA-2020:5441
Product Security DevOps Team 2020-12-15 22:19:01 UTC Status NEW CLOSED
Resolution --- ERRATA
Last Closed 2020-12-15 22:19:01 UTC
errata-xmlrpc 2021-01-14 11:41:39 UTC Link ID Red Hat Product Errata RHBA-2021:0138
errata-xmlrpc 2021-06-23 18:06:02 UTC Link ID Red Hat Product Errata RHBA-2021:2538
errata-xmlrpc 2021-06-24 11:51:06 UTC Link ID Red Hat Product Errata RHBA-2021:2541

Back to bug 1879981