Lucene search

K
redhatcveRedhat.comRH:CVE-2020-29374
HistoryDec 01, 2020 - 5:29 p.m.

CVE-2020-29374

2020-12-0117:29:46
redhat.com
access.redhat.com
36
linux kernel
gup.c
huge_memory.c
unintended read access
mitigation
red hat product security

EPSS

0.001

Percentile

23.3%

An issue was discovered in the Linux kernel related to mm/gup.c and mm/huge_memory.c. The get_user_pages (aka gup) implementation, when used for a copy-on-write page, does not properly consider the semantics of read operations and therefore can grant unintended read access.

Mitigation

Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.