Security Advisory

CVE-2014-3646

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-11-10 11:00:00
Last updated 2024-08-06 10:50:18
Assigner redhat
State PUBLISHED

Description

arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel through 3.17.2 does not have an exit handler for the INVVPID instruction, which allows guest OS users to cause a denial of service (guest OS crash) via a crafted application.