[VU:243144] Linux kernel memory subsystem copy on write mechanism contains a race condition vulnerability

Severity High
CVEs 1


The Linux kernel since version 2.6.22 contains a race condition in the way the copy on write mechanism is handled by the memory subsystem, which may be leveraged locally to gain root privileges.


A local, unprivileged attacker can escalate privileges to root.


Apply an update Linux kernel versions 4.8.3, 4.7.9, and 4.4.26 address this vulnerability. Red Hat, Debian, and Ubuntu have released patches. Users should apply patches through their Linux distributions' normal update process.


Red Hat credits Phil Oester with reporting this vulnerability.

