Buffer overflow in virt/kvm/irq_comm.c in the KVM subsystem in the Linux kernel before 3.2.24 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to Message Signaled Interrupts (MSI), irq routing entries, and an incorrect check by the setup_routing_entry function before invoking the kvm_set_irq function.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | 3.1 | 3.2.24 |
| linux / linux_kernel | 3.3 | 3.4.81 |
| linux / linux_kernel | 2.6.33 | 3.0.72 |
| canonical / ubuntu_linux | 11.10 | 11.10.x |
| canonical / ubuntu_linux | 10.04 | 10.04.x |
| canonical / ubuntu_linux | 12.04 | 12.04.x |