kernel: possible leak or coruption of data residing on hugetlbfs
Published Mar 3, 2022
5.1
MEDIUMCVSS 3.1
EPSS 0.52%
Description
A memory leak flaw in the Linux kernel's hugetlbfs memory usage was found in the way the user maps some regions of memory twice using shmget() which are aligned to PUD alignment with the fault of some of the memory pages. A local user could use this flaw to get unauthorized access to some data.
Affected products
- Vendor n/a Product Kernel Defaultn/a
- Version affects kernel v3.6 and later through v5.15.5.StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| n/a | Kernel | n/a |
|
Configuration 1
- < 5.16
- 5.16
- 5.16
- 5.16
Configuration 2
- 9.0
- 10.0
Configuration 3
- 35
Configuration 4
- 22.1.3
- 22.1.1
- 22.2.0
No data.
Red Hat Enterprise Linux 8
kernel-0:4.18.0-372.9.1.el8
Fixed · RHSA-2022:1988
Red Hat Enterprise Linux 8
kernel-rt-0:4.18.0-372.9.1.rt7.166.el8
Fixed · RHSA-2022:1975
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel-alt
Out of support scope
Red Hat Enterprise Linux 7
kernel-rt
Out of support scope
Red Hat Enterprise Linux 9
kernel
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 8 | kernel-0:4.18.0-372.9.1.el8 | Fixed | RHSA-2022:1988 |
| Red Hat Enterprise Linux 8 | kernel-rt-0:4.18.0-372.9.1.rt7.166.el8 | Fixed | RHSA-2022:1975 |
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel-alt | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Out of support scope | n/a |
| Red Hat Enterprise Linux 9 | kernel | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
References (12)
- https://access.redhat.com/security/cve/CVE-2021-4002 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2025726 x_refsource_MISCIssue TrackingThird Party Advisory
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2021-33909 Advisory
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=13e4ad2ce8df6e058ef482a31fdd81c725b0f7ea x_refsource_MISCPatchVendor Advisory
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=a4a118f2eead1d6c49e00765de89878288d4b890 x_refsource_MISCPatchVendor Advisory
- https://lists.debian.org/debian-lts-announce/2022/03/msg00011.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2022/03/msg00012.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2021-4002
- https://www.cve.org/CVERecord?id=CVE-2021-4002
- https://www.debian.org/security/2022/dsa-5096 vendor-advisoryx_refsource_DEBIANThird Party Advisory
- https://www.openwall.com/lists/oss-security/2021/11/25/1 x_refsource_MISCExploitMailing ListThird Party Advisory
- https://www.oracle.com/security-alerts/cpujul2022.html x_refsource_MISCPatchThird Party Advisory
Change history (0)
No recorded changes yet.