Home page logo

oss-sec logo oss-sec mailing list archives

Re: CVE request -- kernel: kvm: irqchip_in_kernel() and vcpu->arch.apic inconsistency
From: Kurt Seifried <kseifried () redhat com>
Date: Thu, 29 Mar 2012 19:05:22 -0600

On 03/29/2012 01:58 PM, Petr Matousek wrote:
If some vcpus are created before KVM_CREATE_IRQCHIP, then
irqchip_in_kernel() and vcpu->arch.apic will be inconsistent, leading to
potential NULL pointer dereferences.

A unprivileged local user could use this flaw to crash the system.

Upstream fix:



Please use CVE-2012-1601 for this issue.

Kurt Seifried Red Hat Security Response Team (SRT)

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]