The walk_hugetlb_range function in mm/pagewalk.c in the Linux kernel before 4.14.2 mishandles holes in hugetlb ranges, which allows local users to obtain sensitive information from uninitialized kernel memory via crafted use of the mincore() system call.
References
Configurations
Information
Published : 2017-11-27 11:29
Updated : 2018-04-24 18:29
NVD link : CVE-2017-16994
Mitre link : CVE-2017-16994
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
linux
- linux_kernel