PT-2010-2191 · Linux+1 · Kvm+1

Paolo Bonzini

+1

·

Published

2010-03-01

·

Updated

2017-09-19

·

CVE-2010-0419

CVSS v2.0

4.4

Medium

VectorAV:L/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions KVM version 83
Description The issue is related to the x86 emulator in KVM, specifically when a guest is configured for Symmetric Multiprocessing (SMP). It does not properly restrict writing of segment selectors to segment registers. This could allow guest OS users to cause a denial of service (guest OS crash) or gain privileges on the guest OS. The potential exploitation involves leveraging access to an IO port or MMIO region and replacing an instruction in between emulator entry and instruction fetch.
Recommendations For KVM version 83, consider restricting access to IO ports and MMIO regions to minimize the risk of exploitation. As a temporary workaround, limiting the use of Symmetric Multiprocessing (SMP) in guest configurations may help reduce the vulnerability until a proper fix is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-0419
DSA-2010-1
RHSA-2010:0126
RHSA-2010:0172
RHSA-2010_0126

Affected Products

Kvm
Red Hat