First published: Fri Feb 14 2020(Updated: )
** DISPUTED ** vg_lookup in daemons/lvmetad/lvmetad-core.c in LVM2 2.02 mismanages memory, leading to an lvmetad memory leak, as demonstrated by running pvs. NOTE: RedHat disputes CVE-2020-8991 as not being a vulnerability since there’s no apparent route to either privilege escalation or to denial of service through the bug.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
LVM2 | =2.02.00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-8991 is disputed by RedHat and is not classified as a critical vulnerability.
CVE-2020-8991 affects LVM2 version 2.02.00 specifically, leading to potential memory leaks.
There are currently no known exploits associated with CVE-2020-8991.
Mitigation for CVE-2020-8991 involves updating LVM2 to the latest version to ensure any memory management issues are addressed.
CVE-2020-8991 involves a memory leak in the vg_lookup function of LVM2, potentially leading to inefficient memory use.