Vulnerability Details CVE-2020-10724
A vulnerability was found in DPDK versions 18.11 and above. The vhost-crypto library code is missing validations for user-supplied values, potentially allowing an information leak through an out-of-bounds memory read.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 26.6%
CVSS Severity
CVSS v3 Score 5.1
CVSS v2 Score 2.1
Products affected by CVE-2020-10724
-
cpe:2.3:a:dpdk:data_plane_development_kit:-
-
cpe:2.3:a:dpdk:data_plane_development_kit:1.7.1
-
cpe:2.3:a:dpdk:data_plane_development_kit:1.8.0
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.04
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.07
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.07.1
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.07.2
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.11
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.11.1
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.11.10
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.11.11
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.11.2
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.11.3
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.11.4
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.11.5
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.11.6
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.11.7
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.11.8
-
cpe:2.3:a:dpdk:data_plane_development_kit:16.11.9
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.02
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.02.1
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.05
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.05.1
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.05.2
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.08
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.08.1
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.08.2
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.11
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.11.1
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.11.2
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.11.3
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.11.4
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.11.5
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.11.6
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.11.7
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.11.8
-
cpe:2.3:a:dpdk:data_plane_development_kit:17.11.9
-
cpe:2.3:a:dpdk:data_plane_development_kit:18.02
-
cpe:2.3:a:dpdk:data_plane_development_kit:18.02.1
-
cpe:2.3:a:dpdk:data_plane_development_kit:18.02.2
-
cpe:2.3:a:dpdk:data_plane_development_kit:18.05
-
cpe:2.3:a:dpdk:data_plane_development_kit:18.08
-
cpe:2.3:a:dpdk:data_plane_development_kit:18.08.1
-
cpe:2.3:a:dpdk:data_plane_development_kit:18.11
-
cpe:2.3:a:dpdk:data_plane_development_kit:2.0.0
-
cpe:2.3:a:dpdk:data_plane_development_kit:2.1.0
-
cpe:2.3:a:dpdk:data_plane_development_kit:2.2.0
-
cpe:2.3:o:canonical:ubuntu_linux:18.04
-
cpe:2.3:o:canonical:ubuntu_linux:19.10
-
cpe:2.3:o:canonical:ubuntu_linux:20.04
-
cpe:2.3:o:fedoraproject:fedora:32