Oval Definition:oval:org.mitre.oval:tst:39956
Comment:kvm is earlier than 0:83-105.el5_4.27
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:15123
State:oval:org.mitre.oval:ste:11496
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:9892
V
The handle_dr function in arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 2.6.31.1 does not properly verify the Current Privilege Level (CPL) before accessing a debug register, which allows guest OS users to cause a denial of service (trap) on the host OS via a crafted application.
2013-04-29
oval:org.mitre.oval:def:10139
V
The x86 emulator in KVM 83, when a guest is configured for Symmetric Multiprocessing (SMP), does not properly restrict writing of segment selectors to segment registers, which might allow guest OS users to cause a denial of service (guest OS crash) or gain privileges on the guest OS by leveraging access to a (1) IO port or (2) MMIO region, and replacing an instruction in between emulator entry and instruction fetch.
2013-04-29
BACK