CVE-2012-1179: Medium severity linux kernel vulnerability

Published Mar 15, 2012
·
Updated

In some cases it may happen that pmdnoneorclearbad() is called with the mmapsem hold in read mode. In those cases the huge page faults can allocate hugepmds under pmdnoneorclearbad() and that can trigger a false positive from pmdbad() that will not like to see a pmd materializing as trans huge.

A privileged user in the KVM guest can use this flaw to crash the host. An unprivileged local user could use this flaw to crash the system.

Proposed upstream patch: http://comments.gmane.org/gmane.linux.kernel.mm/75413

Other sources

The Linux kernel before 3.3.1, when KVM is used, allows guest OS users to cause a denial of service (host OS crash) by leveraging administrative access to the guest OS, related to the pmdnoneorclearbad function and page faults for huge pages.

Launchpad

Affected Software

2 affected components
debian/linux-2.6
Linux Linux kernel<=3.3

Event History

Mar 15, 2012
Data Sourced
via Red Hat·04:36 PM
DescriptionSeverityAffected Software
May 17, 2012
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·09:58 PM
Description
Sep 15, 2024
Data Sourced
via Ubuntu·10:46 PM
RemedyDescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2012-1179?

CVE-2012-1179 has a severity rating that indicates it can potentially lead to denial of service conditions under specific circumstances.

2

How do I fix CVE-2012-1179?

To fix CVE-2012-1179, it is recommended to update to a patched version of the Linux kernel that is above 3.3.

3

What versions of Linux kernel are affected by CVE-2012-1179?

CVE-2012-1179 affects Linux kernel versions up to and including 3.3.

4

What impact does CVE-2012-1179 have on system stability?

CVE-2012-1179 may cause system instability leading to potential hangs or crashes during memory allocation.

5

Can CVE-2012-1179 be exploited remotely?

CVE-2012-1179 is not typically exploitable remotely; it generally requires local access to the system.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203