Total vulnerabilities in the database
The ioapic_read_indirect function in virt/kvm/ioapic.c in the Linux kernel through 3.8.4 does not properly handle a certain combination of invalid IOAPIC_REG_SELECT and IOAPIC_REG_WINDOW operations, which allows guest OS users to obtain sensitive information from host OS memory or cause a denial of service (host OS OOPS) via a crafted application.
Software | From | Fixed in |
---|---|---|
linux / linux_kernel | 3.8.2 | 3.8.2.x |
linux / linux_kernel | 3.8.0 | 3.8.0.x |
linux / linux_kernel | - | 3.8.4.x |
linux / linux_kernel | 3.8.1 | 3.8.1.x |
linux / linux_kernel | 3.8.3 | 3.8.3.x |