CVE-2020-29369: Race Condition
Published Nov 28, 2020
·Updated
An issue was discovered in mm/mmap.c in the Linux kernel before 5.7.11. There is a race condition between certain expand functions (expanddownwards and expandupwards) and page-table free operations from an munmap call, aka CID-246c320a8cfe.
Affected Software
7 affected componentsFixes available
Linux Linux kernel>=4.20<5.4.54
Linux Linux kernel>=5.5<5.7.11
NetApp Hci Management Node
NetApp Solidfire
NetApp Hci Compute Node
NetApp Hci Storage Node
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.25-16.12.27-1
Remediation
Patch Available
Patch Available
Event History
Nov 28, 2020
CVE Published
via MITRE·06:20 AM
Data Sourced
via MITRE·06:20 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·11:50 PM
Description
May 10, 2025
Data Sourced
via Ubuntu·03:44 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-29369?
CVE-2020-29369 has a medium severity rating due to potential race conditions leading to memory corruption.
2
How do I fix CVE-2020-29369?
To fix CVE-2020-29369, upgrade the Linux kernel to versions 5.10.223-1, 5.10.226-1, or later.
3
Which versions of the Linux kernel are affected by CVE-2020-29369?
CVE-2020-29369 affects Linux kernel versions prior to 5.7.11 and versions between 4.20 and 5.4.54.
4
What types of systems are impacted by CVE-2020-29369?
CVE-2020-29369 impacts systems running specific versions of the Linux kernel and NetApp HCI products.
5
Is CVE-2020-29369 a remotely exploitable vulnerability?
CVE-2020-29369 is not considered remotely exploitable as it requires local access to the affected system.