summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2022-08-08 11:18:17 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2022-08-08 11:18:17 +0200
commit547529884880a7b3189453e66729ac516f6bc004 (patch)
treed1825bdd2f31f9119e9dbe68606d2a823c6933c3
parent9a9c91ddcdbd8c3145974260cb98d2731f7bb1b3 (diff)
Add CVE-2022-2590
-rw-r--r--active/CVE-2022-259013
1 files changed, 13 insertions, 0 deletions
diff --git a/active/CVE-2022-2590 b/active/CVE-2022-2590
new file mode 100644
index 00000000..6db3de77
--- /dev/null
+++ b/active/CVE-2022-2590
@@ -0,0 +1,13 @@
+Description: mm/gup: fix FOLL_FORCE COW security issue and remove FOLL_COW
+References:
+ https://lore.kernel.org/linux-mm/20220808073232.8808-1-david@redhat.com/
+Notes:
+ carnil> Commit fixes 9ae0f87d009c ("mm/shmem: unconditionally set pte
+ carnil> dirty in mfill_atomic_install_pte") in 5.16-rc1.
+Bugs:
+upstream: needed
+5.10-upstream-stable: N/A "Vulnerable code introduced later"
+4.19-upstream-stable: N/A "Vulnerable code introduced later"
+sid: needed
+5.10-bullseye-security: N/A "Vulnerable code introduced later"
+4.19-buster-security: N/A "Vulnerable code introduced later"

© 2014-2024 Faster IT GmbH | imprint | privacy policy