Openwall GNU/*/Linux - a small security-enhanced Linux distro for servers
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Wed, 30 Apr 2014 20:14:04 +0530 (IST)
From: P J P <ppandit@...hat.com>
To: oss security list <oss-security@...ts.openwall.com>
Subject: CVE request Linux kernel: mm: try_to_unmap_cluster() should lock_page()
 before mlocking

    Hello,

Linux kernel kernel's Memory Management Unit(MMU) is vulnerable to a crash
caused by unlocked memory pages. It could occur during the memory page
migration or while cleaning the swap cache pages.

An unprivileged user/program could use this flaw to crash the system kernel,
resulting in DoS.

Upstream fix:
-------------
   -> https://git.kernel.org/linus/57e68e9cd65b4b8eb4045a1e0d0746458502554c

Introduced in:
--------------
   -> https://git.kernel.org/linus/b291f000393f5a0b679012b39d79fbc85c018233


Thank you.
--
Prasad J Pandit / Red Hat Security Response Team

Powered by blists - more mailing lists

Your e-mail address:

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Powered by Openwall GNU/*/Linux - Powered by OpenVZ