imPC@ndo IT

Tracker / CVE-2020-10757

CVE-2020-10757

High 7.8

A flaw was found in the Linux Kernel in versions after 4.5-rc1 in the way mremap handled DAX Huge Pages. This flaw allows a local attacker with access to a DAX enabled storage to escalate their privileges on the system.

Affected products and versions

canonical ubuntu_linux
debian debian_linux
fedoraproject fedora
linux linux_kernel · 4.10 → 4.14.184
linux linux_kernel · 4.15 → 4.19.127
linux linux_kernel · 4.20 → 5.4.45
linux linux_kernel · 4.5 → 4.9.227
linux linux_kernel · 5.5 → 5.6.17
linux linux_kernel · 5.7 → 5.7.1
netapp active_iq_unified_manager
netapp cloud_backup
netapp steelstore_cloud_integrated_storage
opensuse leap
redhat enterprise_linux
redhat enterprise_mrg

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References