PT-2009-6214 · Linux+1 · Linux Kernel+1

Eugene Teo

·

Published

2009-11-27

·

Updated

2023-02-13

·

CVE-2009-4031

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.32-rc8-next-20091125
Description The issue is related to the x86 emulator in the KVM subsystem of the Linux kernel. It allows guest OS users to cause a denial of service, specifically increased scheduling latency, on the host OS. This is achieved through manipulations related to SMP support, where the do insn fetch function attempts to interpret instructions with too many bytes to be valid.
Recommendations For Linux kernel versions prior to 2.6.32-rc8-next-20091125, update to version 2.6.32-rc8-next-20091125 or later to resolve the issue.

Fix

DoS

RCE

Weakness Enumeration

Related Identifiers

CVE-2009-4031
DSA-1962-1
RHSA-2009:1659
RHSA-2009:1692
RHSA-2009_1659

Affected Products

Linux Kernel
Red Hat