AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-14377

HIGH · CVSS 7.1 EPSS 0.41%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-09-30 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.1. See the original NVD description below for full technical details.

CVE
CVE-2020-14377
Severity
HIGH
CVSS
7.1
EPSS
0.41%

Original NVD Description

A flaw was found in dpdk in versions before 18.11.10 and before 19.11.5. A complete lack of validation of attacker-controlled parameters can lead to a buffer over read. The results of the over read are then written back to the guest virtual machine memory. This vulnerability can be used by an attacker in a virtual machine to read significant amounts of host memory. The highest threat from this vulnerability is to data confidentiality and system availability.

Related CVEs

Other vulnerabilities affecting the same vendor(s)