Security Advisory

CVE-2013-1943

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2013-07-16 10:00:00
Last updated 2024-08-06 15:20:37
Assigner redhat
State PUBLISHED

Description

The KVM subsystem in the Linux kernel before 3.0 does not check whether kernel addresses are specified during allocation of memory slots for use in a guests physical address space, which allows local users to gain privileges or obtain sensitive information from kernel memory via a crafted application, related to arch/x86/kvm/paging_tmpl.h and virt/kvm/kvm_main.c.