VDB
CVE-2020-2771
CVE-2020-2771
PUBLISHED
This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064301Z. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the SMB_IOC_SVCENUM IOCTL. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length, heap-based buffer. An attacker can leverage this vulnerability to execute code under the context of the host OS. Was ZDI-CAN-4983.
EPSS 0.14% · 34.1th percentile
Risk Scores
EPSS Score
0.14%
34.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Joyent | Joyent SmartOS | release-20170803-20170803T064301Z |
Timeline
- Apr 15, 2020 CVE Published
- Apr 18, 2020 PoC Published
- Apr 14, 2021 EPSS Score
- Jun 22, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 25, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 27, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 1, 2022 EPSS Score
- Jul 2, 2022 EPSS Score