In the Linux kernel, the following vulnerability has been resolved:
mm: khugepaged: skip huge page collapse for special files
The read-only THP for filesystems will collapse THP for files opened
readonly and mapped with VM_EXEC. The intended usecase is to avoid TLB
misses for large text segments. But it doesn't restrict the file types
so a THP could be collapsed for a non-regular file, for example, block
device, if it is opened readonly and mapped with EXEC permission. This
may cause bugs, like [1] and [2].
This is definitely not the intended usecase, so just collapse THP for
regular files in order to close the attack surface.
[shy828301@gmail.com: fix vm_file check [3]]
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2024-05-22 09:15
Updated : 2025-09-29 16:37
NVD link : CVE-2021-47491
Mitre link : CVE-2021-47491
CVE.ORG link : CVE-2021-47491
JSON object : View
Products Affected
linux
- linux_kernel
CWE
