Bug 2454850 (CVE-2026-31398)
| Summary: | CVE-2026-31398 kernel: mm/rmap: fix incorrect pte restoration for lazyfree folios | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security DevOps Team <prodsec-dev> |
| Status: | NEW --- | QA Contact: | |
| Severity: | medium | Docs Contact: | |
| Priority: | medium | ||
| Version: | unspecified | Keywords: | Security |
| Target Milestone: | --- | ||
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A flaw was found in the Linux kernel's memory management unit (MMU). A local user could exploit this vulnerability by manipulating memory operations, leading to incorrect page table entry (PTE) restoration for lazyfree folios during batch unmapping. This issue can cause memory pages with mixed writable and non-writable attributes to be incorrectly marked as fully writable, violating copy-on-write (CoW) semantics. The consequence of this flaw is a kernel crash, resulting in a denial of service.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
OSIDB Bzimport
2026-04-03 16:04:11 UTC
|