{"id":"CVE-2020-36766","details":"An issue was discovered in the Linux kernel before 5.8.6. drivers/media/cec/core/cec-api.c leaks one byte of kernel memory on specific hardware to unprivileged users, because of directly assigning log_addrs with a hole in the struct.","modified":"2026-03-14T01:31:25.699958Z","published":"2023-09-18T09:15:07.693Z","related":["SUSE-SU-2023:4030-1","SUSE-SU-2023:4031-1","SUSE-SU-2023:4032-1","SUSE-SU-2023:4033-1","SUSE-SU-2023:4095-1","SUSE-SU-2023:4142-1","SUSE-SU-2023:4347-1"],"references":[{"type":"ADVISORY","url":"https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.8.6"},{"type":"FIX","url":"https://github.com/torvalds/linux/commit/6c42227c3467549ddc65efe99c869021d2f4a570"}],"affected":[{"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-36766.json","unresolved_ranges":[{"events":[{"introduced":"0"},{"fixed":"5.8.6"}]}]}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N"}]}