Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Jan H. Schã¶Nherr

Pesquisador deAmazon
#45510de 53,639
5.5CVSS total
Vulnerabilidades · 1
PT-2017-10943
5.5
2017-09-20
Linux · Linux Kernel · CVE-2017-1000252
**Name of the Vulnerable Software and Affected Versions** Linux kernel versions prior to 4.13.3 **Description** The issue allows guest OS users to cause a denial of service, leading to an assertion failure, and potentially causing the hypervisor to hang or crash. This is related to an out-of-bounds `guest irq` value in the KVM subsystem, specifically in the files `arch/x86/kvm/vmx.c` and `virt/kvm/eventfd.c`. **Recommendations** For Linux kernel versions prior to 4.13.3, update to version 4.13.3 or later to resolve the issue. As a temporary workaround, consider restricting access to the KVM subsystem to minimize the risk of exploitation.