LWN.net Logo

kvm: privilege escalation

Package(s):kvm CVE #(s):CVE-2009-3290
Created:September 29, 2009 Updated:November 6, 2009
Description: From the Red Hat advisory: The kvm_emulate_hypercall() implementation was missing a check for the Current Privilege Level (CPL). A local, unprivileged user in a virtual machine could use this flaw to cause a local denial of service or escalate their privileges within that virtual machine.
Alerts:
Red Hat RHSA-2009:1465-01 2009-09-29
Debian DSA-1907-1 2009-10-13
Ubuntu USN-852-1 2009-10-22
CentOS CESA-2009:1465 2009-10-30
Fedora FEDORA-2009-10639 2009-10-21
Mandriva MDVSA-2009:289 2009-10-27
Debian DSA-1915-1 2009-10-22
Fedora FEDORA-2009-10165 2009-10-03

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds