A flaw was found in the Linux Kernel in versions after 4.5-rc1 in the way mremap handled DAX Huge Pages. This flaw allows a local attacker with access to a DAX enabled storage to escalate their privileges on the system.
2020-06-09T13:15:10.430
2024-11-21T04:56:00.527
Modified
CVSSv3.1: 7.8 (HIGH)
AV:L/AC:M/Au:N/C:C/I:C/A:C
3.4
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | < 4.9.227 | Yes |
Operating System | linux | linux_kernel | < 4.14.184 | Yes |
Operating System | linux | linux_kernel | < 4.19.127 | Yes |
Operating System | linux | linux_kernel | < 5.4.45 | Yes |
Operating System | linux | linux_kernel | < 5.6.17 | Yes |
Operating System | linux | linux_kernel | < 5.7.1 | Yes |
Operating System | opensuse | leap | 15.1 | Yes |
Operating System | redhat | enterprise_linux | 7.0 | Yes |
Operating System | redhat | enterprise_linux | 8.0 | Yes |
Operating System | redhat | enterprise_mrg | 2.0 | Yes |
Operating System | fedoraproject | fedora | 31 | Yes |
Operating System | debian | debian_linux | 8.0 | Yes |
Operating System | canonical | ubuntu_linux | 16.04 | Yes |
Operating System | canonical | ubuntu_linux | 18.04 | Yes |
Operating System | canonical | ubuntu_linux | 20.04 | Yes |
Application | netapp | active_iq_unified_manager | - | Yes |
Application | netapp | cloud_backup | - | Yes |
Application | netapp | steelstore_cloud_integrated_storage | - | Yes |