CVE-2020-29368

CVSS v3.1 7 (High)
70% Progress
CVSS v2.0 6.9 (Medium)
69% Progress
EPSS 0.08 % (35th)
0.08% Progress
Affected Products 9
Advisories 37

An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the Linux kernel before 5.7.5. The copy-on-write implementation can grant unintended write access because of a race condition in a THP mapcount check, aka CID-c444eb564fb1.

Weaknesses
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2020-11-28 07:15:11
(3 years ago)
Updated Date
2024-02-15 15:56:34
(7 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel from 4.5.5 version and prior 4.9.228 version cpe:2.3:o:linux:linux_kernel >= 4.5.5 < 4.9.228
  Linux Kernel from 4.10 version and prior 4.14.185 version cpe:2.3:o:linux:linux_kernel >= 4.10 < 4.14.185
  Linux Kernel from 4.15 version and prior 4.19.129 version cpe:2.3:o:linux:linux_kernel >= 4.15 < 4.19.129
  Linux Kernel from 4.20 version and prior 5.4.48 version cpe:2.3:o:linux:linux_kernel >= 4.20 < 5.4.48
  Linux Kernel from 5.5 version and prior 5.7.5 version cpe:2.3:o:linux:linux_kernel >= 5.5 < 5.7.5

Configuration #2

    CPE23 From Up To
  Netapp Cloud Backup cpe:2.3:a:netapp:cloud_backup:-
  Netapp Element Software cpe:2.3:a:netapp:element_software:-
  Netapp Hci Management Node cpe:2.3:a:netapp:hci_management_node:-
  Netapp Solidfire cpe:2.3:a:netapp:solidfire:-

Configuration #3

AND
    CPE23 From Up To
OR  
  Netapp Hci Compute Node cpe:2.3:h:netapp:hci_compute_node:-
OR  
  Running on/with
  Netapp Hci Bootstrap Os cpe:2.3:o:netapp:hci_bootstrap_os:-

Configuration #4

AND
    CPE23 From Up To
OR  
  Netapp H410c cpe:2.3:h:netapp:h410c:-
OR  
  Running on/with
  Netapp H410c Firmware cpe:2.3:o:netapp:h410c_firmware:-
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...