PT-2013-5702 · Linux+1 · Linux Kernel+1
Published
2013-09-25
·
Updated
2023-02-13
·
CVE-2013-5634
CVSS v2.0
4.3
Medium
| Vector | AV:A/AC:H/Au:S/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 3.10
Description
The issue affects the Linux kernel on the ARM platform when KVM is used, allowing host OS users to cause a denial of service, including a NULL pointer dereference, OOPS, and host OS crash, or possibly have other unspecified impacts by omitting vCPU initialization before a KVM GET REG LIST ioctl call.
Recommendations
For Linux kernel versions prior to 3.10, ensure proper vCPU initialization before making a KVM GET REG LIST ioctl call to prevent potential denial of service or other impacts.
Exploit
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linux Kernel
Suse