In skb_to_mamac of networking.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product. References: https://android.googlesource.com/kernel/common/+/d66184791ec81952256d1486e29378b0178bee23 https://source.android.com/security/bulletin/pixel/2020-09-01
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 1919909]
This does not impact Fedora as we do not enable staging drivers.
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2020-0432