Bugzilla – Bug 1157905
VUL-1: CVE-2019-14898: kernel-source: kernel: incomplete fix for race condition between mmget_not_zero()/get_task_mm() and core dumping
Last modified: 2019-11-28 12:01:42 UTC
CVE-2019-14898 Incomplete fix for CVE-2019-11599, race condition between mmget_not_zero()/get_task_mm() and core dumping, in RHEL-7. References: https://bugzilla.redhat.com/show_bug.cgi?id=1774671 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2019-14898 http://people.canonical.com/~ubuntu-security/cve/2019/CVE-2019-14898.html https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/patch/?id=04f5866e41fb70690e28397487d8bd8eea7d712a
Which part of the fix is missing? The referenced commit is the original fix which we should have.