First published: Sat Nov 28 2020(Updated: )
An issue was discovered in mm/mmap.c in the Linux kernel before 5.7.11. There is a race condition between certain expand functions (expand_downwards and expand_upwards) and page-table free operations from an munmap call, aka CID-246c320a8cfe.
Credit: cve@mitre.org cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | >=4.20<5.4.54 | |
Linux Kernel | >=5.5<5.7.11 | |
netapp hci management node | ||
netapp solidfire | ||
netapp hci compute node | ||
netapp hci storage node | ||
debian/linux | 5.10.223-1 5.10.226-1 6.1.123-1 6.1.119-1 6.12.10-1 6.12.11-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-29369 has a medium severity rating due to potential race conditions leading to memory corruption.
To fix CVE-2020-29369, upgrade the Linux kernel to versions 5.10.223-1, 5.10.226-1, or later.
CVE-2020-29369 affects Linux kernel versions prior to 5.7.11 and versions between 4.20 and 5.4.54.
CVE-2020-29369 impacts systems running specific versions of the Linux kernel and NetApp HCI products.
CVE-2020-29369 is not considered remotely exploitable as it requires local access to the affected system.