CVE-2020-29368Race Condition in Kernel

Severity
7.0HIGHNVD
OSV5.4
EPSS
0.1%
top 72.00%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 28
Latest updateFeb 14

Description

An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the Linux kernel before 5.7.5. The copy-on-write implementation can grant unintended write access because of a race condition in a THP mapcount check, aka CID-c444eb564fb1.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.0 | Impact: 5.9

Affected Packages6 packages

NVDlinux/linux_kernel4.5.54.9.228+4
Debianlinux/linux_kernel< 5.7.6-1+3
debiandebian/linux< linux 5.7.6-1 (bookworm)

Patches

🔴Vulnerability Details

4
GHSA
GHSA-wr2j-q648-w99g: An issue was discovered in __split_huge_pmd in mm/huge_memory2022-05-24
OSV
CVE-2020-29368: In __split_huge_pmd of huge_memory2022-03-01
OSV
linux-oem-5.6 vulnerabilities2021-02-25
OSV
CVE-2020-29368: An issue was discovered in __split_huge_pmd in mm/huge_memory2020-11-28

📋Vendor Advisories

6
Palo Alto
PAN-SA-2024-0001 Informational Bulletin: Impact of OSS CVEs in PAN-OS2024-02-14
Android
CVE-2020-29368: Kernel Memory Management2022-03-01
Ubuntu
Linux kernel (OEM) vulnerabilities2021-02-25
Microsoft
An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the Linux kernel before 5.7.5. The copy-on-write implementation can grant unintended write access because of a race condition in a TH2020-11-10
Red Hat
kernel: the copy-on-write implementation can grant unintended write access because of a race condition in a THP mapcount check2020-06-03