<?xml version="1.0" encoding="UTF-8"?>
<VrdaData refvuldefversion="1.2" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://vrda.jpcert.or.jp" xsi:schemaLocation="http://vrda.jpcert.or.jp/feed/xsd/vrda_data.xsd">
  <VrdaDataProvider>
    <Name>JVN iPedia</Name>
    <URL>http://jvndb.jvn.jp</URL>
  </VrdaDataProvider>
  <VrdaDataSourceType>Advisory</VrdaDataSourceType>
  <Vulinfo revisionno="1" lang="ja" invalidated="false">
    <VulinfoID>JVNDB-2026-026015</VulinfoID>
    <VulinfoData>
      <Title>Linux&#12398;Linux Kernel&#12395;&#12362;&#12369;&#12427;&#19981;&#29305;&#23450;&#12398;&#33030;&#24369;&#24615;</Title>
      <VulinfoDescription>
        <Overview>Linux&#12459;&#12540;&#12493;&#12523;&#12395;&#12362;&#12356;&#12390;&#12289;&#20197;&#19979;&#12398;&#33030;&#24369;&#24615;&#12364;&#20462;&#27491;&#12373;&#12428;&#12414;&#12375;&#12383;&#12290;mm/vma&#12391;&#12399;&#12289;mmap()&#12363;&#12425;&#21628;&#12403;&#20986;&#12373;&#12428;&#12427;mmap_prepare()&#12364;VMA&#12398;&#12450;&#12531;&#12510;&#12483;&#12503;&#12434;&#35430;&#12415;&#12394;&#12356;&#21839;&#38988;&#12364;&#12354;&#12426;&#12414;&#12375;&#12383;&#12290;mmap_prepare&#12501;&#12483;&#12463;&#12398;&#27231;&#33021;&#12395;&#12399;&#12289;&#26082;&#23384;&#12398;&#12300;&#31309;&#12415;&#37325;&#12397;&#12425;&#12428;&#12383;&#12301;&#12489;&#12521;&#12452;&#12496;&#12398;mmap()&#12501;&#12483;&#12463;&#12363;&#12425;mmap_prepare()&#12434;&#21628;&#12403;&#20986;&#12377;&#33021;&#21147;&#12364;&#21547;&#12414;&#12428;&#12390;&#12356;&#12414;&#12377;&#12290;&#12371;&#12428;&#12399;&#12289;&#20182;&#12398;&#12489;&#12521;&#12452;&#12496;&#12420;&#12501;&#12449;&#12452;&#12523;&#12471;&#12473;&#12486;&#12512;&#65288;&#20363;&#65306;overlayfs&#12289;shm&#65289;&#12398;mmap&#12501;&#12483;&#12463;&#12418;&#21628;&#12403;&#20986;&#12379;&#12427;&#12418;&#12398;&#12391;&#12377;&#12290;mmap_prepare&#20966;&#29702;&#12398;&#19968;&#29872;&#12392;&#12375;&#12390;&#12289;&#12456;&#12521;&#12540;&#12364;&#30330;&#29983;&#12375;&#12383;&#22580;&#21512;&#12395;&#12399;VMA&#12434;&#12450;&#12531;&#12510;&#12483;&#12503;&#12375;&#12390;&#23550;&#24540;&#12375;&#12390;&#12356;&#12414;&#12377;&#12290;&#12371;&#12398;&#20966;&#29702;&#12399;&#36890;&#24120;&#12398;mmap_prepare&#12398;&#22580;&#21512;&#12395;&#12399;&#27231;&#33021;&#12375;&#12289;VMA&#12364;maple&#12484;&#12522;&#12540;&#12395;&#30906;&#31435;&#12373;&#12428;&#12383;&#26368;&#32066;&#27573;&#38542;&#12391;&#21628;&#12403;&#20986;&#12373;&#12428;&#12414;&#12377;&#12290;&#12375;&#12363;&#12375;&#12394;&#12364;&#12425;&#12289;mmap()&#12501;&#12483;&#12463;&#12399;&#23436;&#20840;&#12395;&#30906;&#31435;&#12373;&#12428;&#12390;&#12356;&#12394;&#12356;&#65288;&#26410;&#30906;&#23450;&#12398;&#65289;VMA&#12509;&#12452;&#12531;&#12479;&#12434;&#21628;&#12403;&#20986;&#12375;&#20596;&#12395;&#28193;&#12375;&#12414;&#12377;&#12290;&#12371;&#12428;&#12399;mmap_prepare()&#20316;&#26989;&#12398;&#21205;&#27231;&#12391;&#12418;&#12354;&#12426;&#12289;&#12381;&#12398;&#12383;&#12417;VMA&#12399;&#20999;&#12426;&#38626;&#12373;&#12428;&#12383;&#29366;&#24907;&#12392;&#12394;&#12387;&#12390;&#12356;&#12414;&#12377;&#12290;&#12371;&#12398;&#29366;&#24907;&#12391;VMA&#12434;&#12450;&#12531;&#12510;&#12483;&#12503;&#12375;&#12424;&#12358;&#12392;&#12377;&#12427;&#12392;&#21839;&#38988;&#12364;&#30330;&#29983;&#12375;&#12289;&#26368;&#12418;&#26126;&#30333;&#12394;&#30151;&#29366;&#12399;vma_mark_detached()&#12391;&#12398;&#35686;&#21578;&#12391;&#12377;&#12290;&#12394;&#12380;&#12394;&#12425;VMA&#12399;&#26082;&#12395;&#20999;&#12426;&#38626;&#12373;&#12428;&#12390;&#12356;&#12427;&#12383;&#12417;&#12391;&#12354;&#12426;&#12289;&#12373;&#12425;&#12395;&#12371;&#12398;&#20966;&#29702;&#12399;&#19981;&#35201;&#12391;&#12418;&#12354;&#12426;&#12414;&#12377;&#12290;mmap()&#12495;&#12531;&#12489;&#12521;&#12399;&#12456;&#12521;&#12540;&#26178;&#12395;VMA&#12398;&#12463;&#12522;&#12540;&#12531;&#12450;&#12483;&#12503;&#12434;&#34892;&#12358;&#12363;&#12425;&#12391;&#12377;&#12290;&#12375;&#12383;&#12364;&#12387;&#12390;&#12289;&#12371;&#12398;&#21839;&#38988;&#12434;&#20462;&#27491;&#12377;&#12427;&#12383;&#12417;&#12395;&#12289;&#26412;&#12497;&#12483;&#12481;&#12391;&#12399;&#20114;&#25563;&#12524;&#12452;&#12516;&#12540;&#32076;&#30001;&#12391;mmap&#12450;&#12463;&#12471;&#12519;&#12531;&#12364;&#23436;&#20102;&#12375;&#12390;&#12356;&#12427;&#12363;&#12289;&#30452;&#25509;&#23436;&#20102;&#12375;&#12390;&#12356;&#12427;&#12363;&#12434;&#20253;&#25773;&#12373;&#12379;&#12414;&#12377;&#12290;&#21069;&#32773;&#12398;&#22580;&#21512;&#12399;VMA&#12398;&#12463;&#12522;&#12540;&#12531;&#12450;&#12483;&#12503;&#12434;&#35430;&#12415;&#12378;&#12289;&#24460;&#32773;&#12398;&#22580;&#21512;&#12399;&#12463;&#12522;&#12540;&#12531;&#12450;&#12483;&#12503;&#12434;&#34892;&#12356;&#12414;&#12377;&#12290;&#12373;&#12425;&#12395;&#26412;&#12497;&#12483;&#12481;&#12399;&#12289;&#12371;&#12398;&#22793;&#26356;&#12434;&#21453;&#26144;&#12377;&#12427;&#12383;&#12417;&#12395;&#12518;&#12540;&#12470;&#12540;&#12521;&#12531;&#12489;&#12398;VMA&#12486;&#12473;&#12488;&#12434;&#26356;&#26032;&#12375;&#12390;&#12356;&#12414;&#12377;&#12290;</Overview>
      </VulinfoDescription>
      <Affected>
        <AffectedItem affectedstatus="vulnerable">
          <Lapt>cpe:/o:linux:linux_kernel</Lapt>
        </AffectedItem>
      </Affected>
      <FactAnalysis>
      </FactAnalysis>
      <Related>
        <RelatedItem relationtype="self" origin="jvnipedia">
          <URL>https://jvndb.jvn.jp/ja/contents/2026/JVNDB-2026-026015.html</URL>
        </RelatedItem>
        <RelatedItem relationtype="alternate" origin="other">
          <Name>Common Vulnerabilities and Exposures (CVE)</Name>
          <VulinfoID>CVE-2026-53373</VulinfoID>
          <URL>https://www.cve.org/CVERecord?id=CVE-2026-53373</URL>
        </RelatedItem>
        <RelatedItem relationtype="alternate" origin="other">
          <Name>National Vulnerability Database (NVD)</Name>
          <VulinfoID>CVE-2026-53373</VulinfoID>
          <URL>https://nvd.nist.gov/vuln/detail/CVE-2026-53373</URL>
        </RelatedItem>
        <RelatedItem relationtype="reference" origin="other">
          <Name>JVNDB</Name>
          <VulinfoID>CWE-noinfo</VulinfoID>
          <Title>&#24773;&#22577;&#19981;&#36275;</Title>
          <URL>https://www.ipa.go.jp/security/vuln/scap/cwe.html</URL>
        </RelatedItem>
        <RelatedItem relationtype="reference" origin="other">
          <Name>&#38306;&#36899;&#25991;&#26360;</Name>
          <VulinfoID>mm/vma: do not try to unmap a VMA if mmap_prepare() invoked from mmap() - kernel/git/stable/linux.git - Linux kernel stable tree (https://git.kernel.org/stable/c/619eab23e1ce7c97e54bfc5a417306d94b3f6f13)</VulinfoID>
          <URL>https://git.kernel.org/stable/c/619eab23e1ce7c97e54bfc5a417306d94b3f6f13</URL>
        </RelatedItem>
        <RelatedItem relationtype="reference" origin="other">
          <Name>&#38306;&#36899;&#25991;&#26360;</Name>
          <VulinfoID>mm/vma: do not try to unmap a VMA if mmap_prepare() invoked from mmap() - kernel/git/stable/linux.git - Linux kernel stable tree (https://git.kernel.org/stable/c/5394bcb746503f2ae4b206212416dccea78e3773)</VulinfoID>
          <URL>https://git.kernel.org/stable/c/5394bcb746503f2ae4b206212416dccea78e3773</URL>
        </RelatedItem>
      </Related>
      <DateFirstPublished>2026-07-30T17:45:26+09:00</DateFirstPublished>
      <DateLastUpdated>2026-07-30T17:45:26+09:00</DateLastUpdated>
    </VulinfoData>
  </Vulinfo>
</VrdaData>
