Back

MEDIUM

kernel: gss_mech_free in net/sunrpc/auth_gss/gss_mech_switch.c in the rpcsec_gss_krb5 implementation lacks certain domain_release calls, leading to a memory leak.

Published May 5, 2020

Description

gss_mech_free in net/sunrpc/auth_gss/gss_mech_switch.c in the rpcsec_gss_krb5 implementation in the Linux kernel through 5.6.10 lacks certain domain_release calls, leading to a memory leak. Note: This was disputed with the assertion that the issue does not grant any access not already available. It is a problem that on unloading a specific kernel module some memory is leaked, but loading kernel modules is a privileged operation. A user could also write a kernel module to consume any amount of memory they like and load that replicating the effect of this bug

Affected products

Remediation

Red Hat statement

This issue is rated as having Low impact because of the preconditions needed to trigger the issue (privileges requried to mount/unmount a module). The issue is also being disputed with MITRE (https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12656) as being a non-issue because of the privileges required.

Red Hat mitigation

There is no mitigation to this flaw other than to prevent the loading of the affected kernel module. A user with permission to load a kernel module would also likely have permission to overcome any blacklisting on the system.

Metrics

Weaknesses (1)

References (9)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published May 5, 2020
Updated Aug 4, 2024
Reserved May 5, 2020
CISA Vulnrichment
Updated May 1, 2024
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Low
Public date May 5, 2020