Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-29368

Опубликовано: 03 июн. 2020
Источник: redhat
CVSS3: 7

Описание

An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the Linux kernel before 5.7.5. The copy-on-write implementation can grant unintended write access because of a race condition in a THP mapcount check, aka CID-c444eb564fb1.

An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the Linux kernel. The copy-on-write implementation can grant unintended write access because of a race condition in a THP mapcount check.

Отчет

This flaw has been rated as having Moderateimpact because, based on Red Hat's assessment, this issue is hard to exploit in practice because the race window is too small for it to be reliable.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6kernelNot affected
Red Hat Enterprise Linux 7kernelNot affected
Red Hat Enterprise Linux 7kernel-rtNot affected
Red Hat Enterprise Linux 9kernelNot affected
Red Hat Enterprise Linux 8kernel-rtFixedRHSA-2021:414009.11.2021
Red Hat Enterprise Linux 8kernelFixedRHSA-2021:435609.11.2021
Red Hat Enterprise Linux 8.2 Extended Update Supportkernel-rtFixedRHSA-2022:522428.06.2022
Red Hat Enterprise Linux 8.2 Extended Update SupportkernelFixedRHSA-2022:522028.06.2022
Red Hat Enterprise Linux 8.4 Extended Update Supportkernel-rtFixedRHSA-2022:563319.07.2022
Red Hat Enterprise Linux 8.4 Extended Update SupportkernelFixedRHSA-2022:562619.07.2022

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-362
https://bugzilla.redhat.com/show_bug.cgi?id=1903244kernel: the copy-on-write implementation can grant unintended write access because of a race condition in a THP mapcount check

7 High

CVSS3

Связанные уязвимости

CVSS3: 7
ubuntu
больше 4 лет назад

An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the Linux kernel before 5.7.5. The copy-on-write implementation can grant unintended write access because of a race condition in a THP mapcount check, aka CID-c444eb564fb1.

CVSS3: 7
nvd
больше 4 лет назад

An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the Linux kernel before 5.7.5. The copy-on-write implementation can grant unintended write access because of a race condition in a THP mapcount check, aka CID-c444eb564fb1.

CVSS3: 7
msrc
больше 4 лет назад

Описание отсутствует

CVSS3: 7
debian
больше 4 лет назад

An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the ...

suse-cvrf
больше 4 лет назад

Security update for the Linux Kernel (Live Patch 22 for SLE 15 SP1)

7 High

CVSS3