CVE-2020-10773
A stack information leak flaw was found in s390/s390x in the Linux kernel’s memory manager functionality, where it incorrectly writes to the /proc/sys/vm/cmm_timeout file. This flaw allows a local user to see the kernel data.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 4.4
- CVSS vector
- CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
- EPSS probability
- 0.02%
- CWE
- CWE-626
- Published
- 2020-09-10
- Last modified
- 2026-03-14
Affected products
- [UNKNOWN] kernel
Weakness type
Related vulnerabilities
- CVE-2026-76816 — Netty: MQTT Topic Name and Client ID Validation Bypass
- CVE-2026-62380 — Netty before 4.2.16.Final SOCKS Proxy Null Byte Injection
- CVE-2026-42579 — Netty: DNS Codec Input Validation Bypass in Netty (Encoder + Decoder)
- CVE-2026-42040 — Axios: Null Byte Injection via Reverse-Encoding in AxiosURLSearchParams
- CVE-2019-17137 — This vulnerability allows network-adjacent attackers to bypass authentication on affected...
- CVE-2019-11936 — Various APC functions accept keys containing null bytes as input, leading to premature truncation...