CVE-2020-7053 describes a use-after-free vulnerability in the i915_ppgtt_close function within the Linux kernel's i915 graphics driver, affecting versions 4.14.165 and earlier, 4.19.96 and earlier, and 5.x before 5.2. This flaw, related to i915_gem_context_destroy_ioctl, could allow a local attacker to achieve high impact on confidentiality, integrity, and availability. Rated 7.8 HIGH on CVSS, it requires local access and low privileges, but has low attack complexity. Currently, there is no known active exploitation, publicly available exploit code, or significant community discussion or media coverage surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 4.14, <= 4.14.165CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 4.19, <= 4.19.96CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 5.0, <= 5.2CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.