The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system call.
References
Configurations
History
No history.
Information
Published : 2017-11-27 19:29
Updated : 2024-02-04 19:29
NVD link : CVE-2017-16994
Mitre link : CVE-2017-16994
CVE.ORG link : CVE-2017-16994
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor