In the Linux kernel, the following vulnerability has been resolved:
hwrng: core - Fix page fault dead lock on mmap-ed hwrng
There is a dead-lock in the hwrng device read path. This triggers
when the user reads from /dev/hwrng into memory also mmap-ed from
/dev/hwrng. The resulting page fault triggers a recursive read
which then dead-locks.
Fix this by using a stack buffer when calling copy_to_user.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2024-03-18 11:15
Updated : 2024-12-12 15:20
NVD link : CVE-2023-52615
Mitre link : CVE-2023-52615
CVE.ORG link : CVE-2023-52615
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-667
Improper Locking
