PT-2009-6214 · Linux+1 · Linux Kernel+1
Eugene Teo
·
Published
2009-11-27
·
Updated
2023-02-13
·
CVE-2009-4031
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 2.6.32-rc8-next-20091125
Description
The issue is related to the x86 emulator in the KVM subsystem of the Linux kernel. It allows guest OS users to cause a denial of service, specifically increased scheduling latency, on the host OS. This is achieved through manipulations related to SMP support, where the
do insn fetch function attempts to interpret instructions with too many bytes to be valid.Recommendations
For Linux kernel versions prior to 2.6.32-rc8-next-20091125, update to version 2.6.32-rc8-next-20091125 or later to resolve the issue.
Fix
DoS
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linux Kernel
Red Hat