Back to bug 1931327

Who When What Removed Added
Wade Mealing 2021-02-22 07:31:19 UTC CC security-response-team
Wade Mealing 2021-03-03 01:47:57 UTC Deadline 2021-07-06
Clifford Perry 2021-03-09 06:52:55 UTC CC cperry
Red Hat Bugzilla 2021-05-30 12:35:51 UTC CC bhu
Jeff Fearn 🐞 2021-06-03 12:00:19 UTC CC bhu
Dhananjay Arunesh 2021-08-18 06:23:50 UTC Alias CVE-2021-3714
Summary EMBARGOED kernel: Remote Page Deduplication Attacks EMBARGOED CVE-2021-3714 kernel: Remote Page Deduplication Attacks
Eric Christensen 2021-08-20 14:45:18 UTC Doc Text A flaw was found in the Linux kernel's memory de-duplication mechanism. Previous work has shown that memory de-duplication can be attacked via a local exploitation mechanism. The same technique can be used if an attacker can upload page sized files and detect the change in access time from a networked service to determine if the page has been merged. The highest threat from this vulnerability is to data confidentiality.
Wade Mealing 2021-11-17 00:44:26 UTC CC chwhite, fpacheco, jarod, jforbes, jlelli, kcarcia, lgoncalv, qzhao, swood, williams
Wade Mealing 2021-11-17 00:46:44 UTC Depends On 2024001, 2024000, 2024003, 2024002
Li Wang 2021-11-17 02:45:25 UTC CC liwan
zhijwang 2021-11-17 07:42:14 UTC CC zhijwang
Norm Murray 2021-11-17 14:53:02 UTC CC scweaver
Wade Mealing 2021-11-18 06:56:02 UTC Depends On 2024487, 2024470, 2024488, 2024476, 2024471, 2024472, 2024480, 2024481, 2024469, 2024482, 2024485, 2024475, 2024479, 2024474, 2024478, 2024483, 2024477, 2024473, 2024484, 2024486
Don Howard 2021-11-18 15:58:11 UTC CC jfaracco, lzampier
Wade Mealing 2021-11-19 05:49:15 UTC CC jburrell, vkumar
Wade Mealing 2021-11-19 07:08:30 UTC Comment 0 updated
Wade Mealing 2021-11-19 07:13:39 UTC Doc Text A flaw was found in the Linux kernel's memory de-duplication mechanism. Previous work has shown that memory de-duplication can be attacked via a local exploitation mechanism. The same technique can be used if an attacker can upload page sized files and detect the change in access time from a networked service to determine if the page has been merged. The highest threat from this vulnerability is to data confidentiality. A flaw was found in the Linux kernels memory deduplication mechanism. Previous work has shown that memory deduplication can be attacked via a local exploitation mechanism. The same technique can be used if an attacker can upload page sized files and detect the change in access time from a networked service to determine if the page has been merged.
Don Howard 2021-12-02 21:04:03 UTC Flags needinfo?(wmealing) needinfo?(wmealing) needinfo?(wmealing)
Wade Mealing 2021-12-07 01:10:19 UTC Depends On 2029650
Wade Mealing 2021-12-07 02:35:48 UTC Flags needinfo?(wmealing) needinfo?(wmealing) needinfo?(wmealing)
Zhao Lina 2021-12-08 02:52:37 UTC CC linzhao
Don Howard 2022-03-04 23:33:41 UTC CC aquini, ddutile
Rafael Aquini 2022-03-05 00:17:36 UTC Flags needinfo?(wmealing)
Wade Mealing 2022-03-08 05:45:44 UTC Flags needinfo?(wmealing) needinfo?(jpoimboe)
CC jpoimboe
Rafael Aquini 2022-03-08 14:22:22 UTC CC aarcange
Josh Poimboeuf 2022-03-09 06:09:45 UTC Flags needinfo?(jpoimboe)
Rohit Keshri 2022-03-31 06:38:10 UTC Summary EMBARGOED CVE-2021-3714 kernel: Remote Page Deduplication Attacks CVE-2021-3714 kernel: Remote Page Deduplication Attacks
CC adscvr, airlied, alciregi, bskeggs, hdegoede, hpa, jarodwilson, jglisse, joe.lawrence, jonathan, josef, jwboyer, jwyatt, kernel-maint, kernel-mgr, linville, masami256, mchehab, steved
Group qe_staff, security
Deadline 2021-07-06
Rohit Keshri 2022-03-31 06:38:44 UTC Depends On 2070414
Salvatore Bonaccorso 2022-04-02 19:02:16 UTC Flags needinfo?(wmealing)
CC carnil
Wade Mealing 2022-04-07 05:36:52 UTC Flags needinfo?(wmealing) needinfo?(rkeshri)
CC rkeshri
Valerie Sroka 2022-04-13 14:38:52 UTC CC vsroka
Rohit Keshri 2022-05-10 17:41:58 UTC Flags needinfo?(rkeshri)
Rohit Keshri 2022-05-24 16:23:54 UTC Depends On 2089899, 2089896, 2089897, 2089898
Red Hat Bugzilla 2022-06-04 08:05:18 UTC CC fpacheco
Red Hat Bugzilla 2022-07-16 03:21:31 UTC CC brdeoliv
Kazu Yoshida 2022-08-26 11:37:13 UTC CC kyoshida
Alex 2022-09-01 15:21:54 UTC Flags needinfo?(nmurray)
Alex 2022-09-08 17:42:45 UTC Flags needinfo?(nmurray)
Red Hat Bugzilla 2022-12-31 23:34:31 UTC CC fhrbata
Steve Outteridge 2023-01-09 09:38:14 UTC CC soutteri
Red Hat Bugzilla 2023-04-01 08:39:33 UTC CC dhoward
Red Hat Bugzilla 2023-04-14 16:21:44 UTC CC linzhao
Rafael Aquini 2023-05-09 13:46:16 UTC Flags needinfo?(wmealing)
Product Security DevOps Team 2023-05-09 23:12:25 UTC Flags needinfo?(wmealing) needinfo?(rkeshri)
Red Hat Bugzilla 2023-05-31 23:33:53 UTC CC soutteri
Red Hat Bugzilla 2023-05-31 23:37:29 UTC CC cperry
Rafael Aquini 2023-06-26 12:45:09 UTC Resolution --- WONTFIX
Status NEW CLOSED
Last Closed 2023-06-26 12:45:09 UTC

Back to bug 1931327