Beveiligingsadvies

CVE-2017-2583

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2017-02-06 06:04:00
Laatst bijgewerkt 2024-08-05 13:55:06
Toegewezen door redhat
CVSS-score geen score
Status PUBLISHED

Beschrijving

The load_segment_descriptor implementation in arch/x86/kvm/emulate.c in the Linux kernel before 4.9.5 improperly emulates a "MOV SS, NULL selector" instruction, which allows guest OS users to cause a denial of service (guest OS crash) or gain guest OS privileges via a crafted application.