|
|
| |
|
| |
hyper-v: denial of service
| Package(s): | Hyper-V |
CVE #(s): | CVE-2012-2669
|
| Created: | November 22, 2012 |
Updated: | November 28, 2012 |
| Description: |
From the openSUSE advisory:
The
source code without this patch caused hv_kvp_daemon to exit
when it processed a spoofed Netlink packet which has been
sent from an untrusted local user. Now Netlink messages
with a non-zero nl_pid source address are ignored and a
warning is printed into the syslog.
This fixes the previous change from CVE-2012-2669.
|
| Alerts: |
|
( Log in to post comments)
|
|
|