Security Advisory

CVE-2016-9083

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-11-28 03:01:00
Last updated 2024-08-06 02:42:10
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

drivers/vfio/pci/vfio_pci.c in the Linux kernel through 4.8.11 allows local users to bypass integer overflow checks, and cause a denial of service (memory corruption) or have unspecified other impact, by leveraging access to a vfio PCI device file for a VFIO_DEVICE_SET_IRQS ioctl call, aka a "state machine confusion bug."