imPC@ndo IT

Tracker / CVE-2012-2137

CVE-2012-2137

Medium 6.9

Buffer overflow in virt/kvm/irq_comm.c in the KVM subsystem in the Linux kernel before 3.2.24 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to Message Signaled Interrupts (MSI), irq routing entries, and an incorrect check by the setup_routing_entry function before invoking the kvm_set_irq function.

Affected products and versions

canonical ubuntu_linux
linux linux_kernel · 2.6.33 → 3.0.72
linux linux_kernel · 3.1 → 3.2.24
linux linux_kernel · 3.3 → 3.4.81

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References