PT-2018-10153 · Linux+4 · Linux Kernel+4

Andy Lutomirski

·

Publicado

2018-05-08

·

Atualizado

2019-10-09

·

CVE-2018-1087

CVSS v3.1

8.0

Alta

VetorAV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 4.16 Linux kernel versions 4.16-rc7 and earlier Linux kernel versions 4.17-rc1 through 4.17-rc3
Description The issue is related to a flaw in the way the Linux kernel's KVM hypervisor handled exceptions delivered after a stack switch operation via Mov SS or Pop SS instructions. During the stack switch operation, the processor did not deliver interrupts and exceptions, rather they are delivered once the first instruction after the stack switch is executed. An unprivileged KVM guest user could use this flaw to crash the guest or, potentially, escalate their privileges in the guest.
Recommendations For Linux kernel versions prior to 4.16, update to version 4.16 or later. For Linux kernel versions 4.16-rc7 and earlier, update to a version later than 4.16-rc7. For Linux kernel versions 4.17-rc1 through 4.17-rc3, update to a version later than 4.17-rc3. As a temporary workaround, consider restricting access to the KVM hypervisor to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CESA-2018_1318
CVE-2018-1087
DSA-4196-1
MGASA-2018-0249
MGASA-2018-0264
MGASA-2018-0265
MGASA-2018-0324
MGASA-2018-0340
MGASA-2018-0341
RHSA-2018:1318
RHSA-2018:1345
RHSA-2018:1347
RHSA-2018:1348
RHSA-2018:1355
RHSA-2018:1524
RHSA-2018:1710
RHSA-2018:1711
RHSA-2018_1318
RHSA-2018_1355
SUSE-SU-2018:1171-1
SUSE-SU-2018:1172-1
SUSE-SU-2018:1173-1
SUSE-SU-2018:1173-2
SUSE-SU-2018:1220-1
SUSE-SU-2018:1221-1
SUSE-SU-2018:1505-1
SUSE-SU-2018:1510-1
SUSE-SU-2018:1511-1
SUSE-SU-2018:1516-1
SUSE-SU-2018:1518-1
SUSE-SU-2018:1522-1
SUSE-SU-2018:1523-1
SUSE-SU-2018:1524-1
SUSE-SU-2018:1530-1
SUSE-SU-2018:1534-1
SUSE-SU-2018:1536-1
SUSE-SU-2018:1545-1
SUSE-SU-2018:1548-1
SUSE-SU-2018:1636-1
SUSE-SU-2018:1637-1
SUSE-SU-2018:1639-1
SUSE-SU-2018:1640-1
SUSE-SU-2018:1641-1
SUSE-SU-2018:1642-1
SUSE-SU-2018:1643-1
SUSE-SU-2018:1644-1
SUSE-SU-2018:1645-1
SUSE-SU-2018:1648-1
USN-3641-1
USN-3641-2

Produtos afetados

Centos
Linux Kernel
Red Hat
Suse
Ubuntu