Security Advisory

CVE-2022-2153

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-08-31 00:00:00
Last updated 2024-08-03 00:32:07
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

A flaw was found in the Linux kernel’s KVM when attempting to set a SynIC IRQ. This issue makes it possible for a misbehaving VMM to write to SYNIC/STIMER MSRs, causing a NULL pointer dereference. This flaw allows an unprivileged local attacker on the host to issue specific ioctl calls, causing a kernel oops condition that results in a denial of service.