High severity7.8NVD Advisory· Published Jul 20, 2020· Updated Jun 17, 2026
CVE-2020-15852
CVE-2020-15852
Description
An issue was discovered in the Linux kernel 5.5 through 5.7.9, as used in Xen through 4.13.x for x86 PV guests. An attacker may be granted the I/O port permissions of an unrelated task. This occurs because tss_invalidate_io_bitmap mishandling causes a loss of synchronization between the I/O bitmaps of TSS and Xen, aka CID-cadfad870154.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8- cpe:2.3:a:netapp:cloud_backup:-:*:*:*:*:*:*:*
- cpe:2.3:a:netapp:steelstore_cloud_integrated_storage:-:*:*:*:*:*:*:*
- cpe:2.3:h:netapp:solidfire_baseboard_management_controller:-:*:*:*:*:*:*:*
- Linux/Linux kerneldescription
Patches
Vulnerability mechanics
References
5- xenbits.xen.org/xsa/advisory-329.htmlnvdPatchThird Party Advisory
- git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/nvdMailing ListPatchVendor Advisory
- github.com/torvalds/linux/commit/cadfad870154e14f745ec845708bc17d166065f2nvdPatchThird Party Advisory
- www.openwall.com/lists/oss-security/2020/07/21/2nvdMailing ListThird Party Advisory
- security.netapp.com/advisory/ntap-20200810-0001/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.