PT-2009-5979 · Linux+1 · Linux Kernel+1

Eugene Teo

·

Published

2009-10-30

·

Updated

2023-02-13

·

CVE-2009-3722

CVSS v2.0

7.1

High

VectorAV:N/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.31.1
Description The issue is related to the handle dr function in the KVM subsystem, which does not properly verify the Current Privilege Level (CPL) before accessing a debug register. This allows guest OS users to cause a denial of service (trap) on the host OS via a crafted application.
Recommendations For versions prior to 2.6.31.1, update to version 2.6.31.1 or later to resolve the issue.

Fix

DoS

Weakness Enumeration

Related Identifiers

CVE-2009-3722
DSA-1962-1
RHSA-2010:0126
RHSA-2010:0172
RHSA-2010_0126

Affected Products

Linux Kernel
Red Hat