Beveiligingsadvies

CVE-2016-9083

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2016-11-28 03:01:00
Laatst bijgewerkt 2024-08-06 02:42:10
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

drivers/vfio/pci/vfio_pci.c in the Linux kernel through 4.8.11 allows local users to bypass integer overflow checks, and cause a denial of service (memory corruption) or have unspecified other impact, by leveraging access to a vfio PCI device file for a VFIO_DEVICE_SET_IRQS ioctl call, aka a "state machine confusion bug."