In the Linux kernel, the following vulnerability has been resolved: mm: page_ext: add count limit to page_ext_iter_next to prevent invalid PFN access The page_ext iteration API does not validate if…
Medium CVSS 5.5
Summary
In the Linux kernel, the following vulnerability has been resolved: mm: page_ext: add count limit to page_ext_iter_next to prevent invalid PFN access The page_ext iteration API does not validate if the PFN still belongs to a valid section while advancing the iterator. When dynamically adding memory in the hotplug path, it can lead to a NULL pointer dereference during page_ext_lookup at the boundary of the last valid section when iterator count equals __pgcount. The for_each_page_ext() macro…
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/377b1cd6bbcf327338cd951cc2fd74bc75540235 Patch
- https://git.kernel.org/stable/c/8dcaa0f87a88d720d13106f3a306c6b61d189d86 Patch
- https://git.kernel.org/stable/c/ffd017237cfe99e6e5602ab14179b0e6878a0840 Patch
Timeline
- nvd_ingest NVD