PT-2013-3481 · Linux+3 · Linux Kernel+3

Published

2013-06-10

·

Updated

2023-02-13

·

CVE-2013-1943

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 3.0
Description The issue concerns a lack of checks in the KVM subsystem for kernel addresses during memory slot allocation for a guest's physical address space. This allows local users to potentially gain privileges or access sensitive kernel memory information by using a crafted application. The issue is related to specific files in the kernel source code.
Recommendations For Linux kernel versions prior to 3.0, update to version 3.0 or later to resolve the issue.

Fix

RCE

Weakness Enumeration

Related Identifiers

CESA-2013_0911
CVE-2013-1943
RHSA-2013:0911
RHSA-2013_0911
USN-1939-1
USN-1940-1

Affected Products

Centos
Linux Kernel
Red Hat
Suse