|
|
| |
|
| |
kvm: host denial of service
| Package(s): | kvm |
CVE #(s): | CVE-2009-4031
|
| Created: | December 9, 2009 |
Updated: | March 22, 2010 |
| Description: |
From the Red Hat advisory:
On x86 platforms, the do_insn_fetch() function did not limit the amount of
instruction bytes fetched per instruction. Users in guest operating systems
could leverage this flaw to cause large latencies on SMP hosts that could
lead to a local denial of service on the host operating system. This
update fixes this issue by imposing the architecturally-defined 15 byte
length limit for instructions. (CVE-2009-4031)
|
| Alerts: |
|
( Log in to post comments)
|
|
|