VDB

CVE-2020-24394

CVE-2020-24394 PUBLISHED

In the Linux kernel before 5.7.8, fs/nfsd/vfs.c (in the NFS server) can set incorrect permissions on new filesystem objects when the filesystem lacks ACL support, aka CID-22cf8419f131. This occurs because the current umask is not considered.

EPSS 0.05% · 15.8th percentile

Risk Scores

EPSS Score
0.05%
15.8th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSlinux-gcp4.15.0-1025.26, 4.15.0-1003.3, 4.15.0-1010.10
Ubuntu:18.04:LTSlinux-oracle-5.05.0.0-1009.14~18.04.1, 5.0.0-1008.13~18.04.1, 0
Ubuntu:Pro:14.04:LTSlinux-azure4.15.0-1089.99~14.04.1, 4.15.0-1077.82~14.04.1, 4.15.0-1082.92~14.04.1
Ubuntu:18.04:LTSlinux-hwe-5.45.4.0-39.43~18.04.1, 0, 5.4.0-40.44~18.04.1
Ubuntu:18.04:LTSlinux-gcp-4.154.15.0-1077.87, 0, 4.15.0-1080.90
Ubuntu:18.04:LTSlinux-azure4.15.0-1003.3, 4.15.0-1013.13, 4.15.0-1008.8
Ubuntu:16.04:LTSlinux-aws-hwe4.15.0-1030.31~16.04.1, 0, *
Ubuntu:18.04:LTSlinux-azure-edge4.18.0-1007.7~18.04.1, *, 0
Ubuntu:18.04:LTSlinux-aws-5.05.0.0-1023.26~18.04.1, 5.0.0-1022.25~18.04.1, 5.0.0-1021.24~18.04.1
Ubuntu:20.04:LTSlinux-raspi0, 5.4.0-1007.7, 5.4.0-1013.13
Ubuntu:20.04:LTSlinux-aws5.4.0-1018.18, 5.4.0-1009.9, 0
Ubuntu:18.04:LTSlinux-aws-5.45.4.0-1018.18~18.04.1, 0, 5.4.0-1020.20~18.04.2
Ubuntu:22.04:LTSlinux-realtime5.15.0-1032.35, 0
Ubuntu:Pro:FIPS:20.04:LTSlinux-azure-fips0, 5.4.0-1022.22+fips1
Ubuntu:Pro:FIPS-updates:18.04:LTSlinux-aws-fips4.15.0-2018.18, 4.15.0-2022.22, 4.15.0-2000.4
Ubuntu:18.04:LTSlinux-aws-5.3*, *, 0
Ubuntu:20.04:LTSlinux-gcp5.4.0-1009.9, 5.4.0-1008.8, 5.4.0-1007.7
Ubuntu:Pro:FIPS-updates:18.04:LTSlinux-azure-fips4.15.0-2006.7, 0, 4.15.0-1002.2
Ubuntu:18.04:LTSlinux-oracle4.15.0-1015.17, 4.15.0-1014.16, 4.15.0-1013.15
Ubuntu:18.04:LTSlinux-gcp-5.3*, 5.3.0-1008.9~18.04.1, 0

…and 45 more

Timeline

  • Aug 19, 2020 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 28, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›