An issue was discovered in the Linux kernel 4.4 through 5.7.1. drivers/tty/vt/keyboard.c has an integer overflow if k_ascii is called several times in a row, aka CID-b86dab054059. NOTE: Members in the community argue that the integer overflow does not lead to a security issue in this case.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-13974.json"
[
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@b86dab054059b970111b5516ae548efaae5b3aae",
"digest": {
"line_hashes": [
"53089018397939203797255432863093873145",
"200269091695885044027310209299757138181",
"19021902660406295467317681918913258984",
"254508483099883589747870475303022389285",
"69748527004959692111107937086269618176",
"151739841740217480008655298133862234531",
"118254671775550531660165067494833475096",
"28021616702178506310802096554714288602",
"49150384419048991812419330611344253295",
"79795702894289514271650522997108236157",
"119255440442574622429183948337471162333",
"7243394298870975758174257967520320371",
"311906686812138318780932815149848042413",
"34812921697684523896439296273055980111",
"9514594746354777011119210096106932808",
"51427956189921543883259397812815762328",
"126636236345349360688205476126955863027",
"246360327367136122221263716966407992300",
"130567264861850711078596028469776312187",
"332573696544636135875347172113427460262",
"165854448249374737218885860606932313876",
"244126318252173399734420238378841483966",
"156974338828817444074679254384911029871",
"294872761364283762888994768941002601062"
],
"threshold": 0.9
},
"id": "CVE-2020-13974-6d3d2832",
"deprecated": false,
"target": {
"file": "drivers/tty/vt/keyboard.c"
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@b86dab054059b970111b5516ae548efaae5b3aae",
"digest": {
"function_hash": "216881808332940304570656876783479727309",
"length": 256.0
},
"id": "CVE-2020-13974-9148b69d",
"deprecated": false,
"target": {
"file": "drivers/tty/vt/keyboard.c",
"function": "k_ascii"
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@b86dab054059b970111b5516ae548efaae5b3aae",
"digest": {
"function_hash": "52675626415774687320130526316379418692",
"length": 630.0
},
"id": "CVE-2020-13974-fa2f1b62",
"deprecated": false,
"target": {
"file": "drivers/tty/vt/keyboard.c",
"function": "k_shift"
}
}
]