Skip to content

kernel CVE-2020-25285

Moderate
webern published GHSA-3pwc-c3mh-xcv7 Nov 19, 2020

Package

kernel

Affected versions

< 1.0.3

Patched versions

1.0.3

Description

A flaw was found in the Linux kernels sysctl handling code for hugepages management. When multiple root level processes would write to modify the /proc/sys/vm/nr_hugepages file it could create a race on internal variables leading to a system crash or memory corruption.

Severity

Moderate

CVE ID

CVE-2020-25285

Weaknesses

No CWEs