ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

← Back to results

CVE-2020-36788

In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: avoid a use-after-free when BO init fails nouveau_bo_init() is backed by ttm_bo_init() and ferries its return code back to the caller. On failures, ttm_bo_init() invokes the provided destructor which should de-initialize and free the memory. Thus, when nouveau_bo_init() returns an error the gem object has already been released and the memory freed by nouveau_bo_del_ttm().
An official patch is available. Apply the patch as soon as possible.
7.8
CVSS
4.4
ShadowTrackr
NO
CISA KEV
-
NCSC.nl
CVSS v4.0 Metrics
Exploitability
Attack VectorLocal
ComplexityLow
RequirementsPresent
PrivilegesLow
User InteractionNone
Threat
Exploit MaturityUnreported
Vulnerable System
ConfidentialityHigh
IntegrityHigh
AvailabilityHigh
Subsequent System
ConfidentialityNone
IntegrityNone
AvailabilityNone
Supplemental
SafetyNegligible
AutomatableYes
RecoveryAutomatic
Value DensityConcentrated
UrgencyMedium
Patch StatusOfficial Patch

Change Log
DateSourceChangesScore
2026-07-21nvdAV: P→L, AC: H→L, PR: H→L, UI: A→N, VC: N→H, VI: N→H, VA: N→H0.0 → 4.4
2026-07-21nvdpatch: Unavailable→Official Patch0.0 → 0.0
2026-07-21cve.orginitial, patch: Unavailable0.0

Affected Software
VendorProductVersion
LinuxLinux≥ 019cbd4a4feb3aa3a917d78e7110e301, < bcf34aa5082ee2343574bc3f4d1c1260
LinuxLinux< 5.4
LinuxLinux≥ 5.15, ≤ *
LinuxLinux≥ 5.10.73, ≤ 5.10.*
LinuxLinux≥ 5.14.12, ≤ 5.14.*
LinuxLinux≥ 019cbd4a4feb3aa3a917d78e7110e301, < f86e19d918a85492ad1a01fcdc0ad5ec
LinuxLinux≥ 019cbd4a4feb3aa3a917d78e7110e301, < 548f2ff8ea5e0ce767ae3418d1ec5308
LinuxLinux5.4
linuxlinux_kernel≥ 5.4, < 5.10.73
linuxlinux_kernel≥ 5.11, < 5.14.12
linuxlinux_kernel5.15
Published: 2024-05-21