oss-sec mailing list archives

CVE request Linux kernel: mm: try_to_unmap_cluster() should lock_page() before mlocking


From: P J P <ppandit () redhat com>
Date: Wed, 30 Apr 2014 20:14:04 +0530 (IST)

   Hello,

Linux kernel kernel's Memory Management Unit(MMU) is vulnerable to a crash
caused by unlocked memory pages. It could occur during the memory page
migration or while cleaning the swap cache pages.

An unprivileged user/program could use this flaw to crash the system kernel,
resulting in DoS.

Upstream fix:
-------------
  -> https://git.kernel.org/linus/57e68e9cd65b4b8eb4045a1e0d0746458502554c

Introduced in:
--------------
  -> https://git.kernel.org/linus/b291f000393f5a0b679012b39d79fbc85c018233


Thank you.
--
Prasad J Pandit / Red Hat Security Response Team


Current thread: