GSD-2023-1000533

Source
https://data.gsd.id/GSD-2023-1000533
Import Source
https://github.com/cloudsecurityalliance/gsd-database/blob/main/2023/1000xxx/GSD-2023-1000533.json
JSON Data
https://api.osv.dev/v1/vulns/GSD-2023-1000533
Published
2023-01-17T17:46:58.455404Z
Modified
2023-02-22T07:55:38.544560Z
Summary
mm/gup: disallow FOLL_FORCE|FOLL_WRITE on hugetlb mappings
Details

mm/gup: disallow FOLLFORCE|FOLLWRITE on hugetlb mappings

This is an automated ID intended to aid in discovery of potential security vulnerabilities. The actual impact and attack plausibility have not yet been proven. This ID is fixed in Linux Kernel version v6.0.16 by commit 9b34db7f867dd738fc936da7d26a1ece62f2741e, it was introduced in version v6.0 by commit 1d8d14641fd94a01b20a4abbf2749fd8eddcf57b. For more details please see the references link.

References

Affected packages

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/
Events
Introduced
1d8d14641fd94a01b20a4abbf2749fd8eddcf57b
Limit
9b34db7f867dd738fc936da7d26a1ece62f2741e

Affected versions

v6.*
v6.0
v6.0-rc2
v6.0-rc3
v6.0-rc4
v6.0-rc5
v6.0-rc6
v6.0-rc7
v6.0.1
v6.0.10
v6.0.11
v6.0.12
v6.0.13
v6.0.14
v6.0.15
v6.0.2
v6.0.3
v6.0.4
v6.0.5
v6.0.6
v6.0.7
v6.0.8
v6.0.9

Database specific

source
"https://github.com/cloudsecurityalliance/gsd-database/blob/main/2023/1000xxx/GSD-2023-1000533.json"