CVE-2009-4031
29.11.2009, 13:07
The do_insn_fetch function in arch/x86/kvm/emulate.c in the x86 emulator in the KVM subsystem in the Linux kernel before 2.6.32-rc8-next-20091125 tries to interpret instructions that contain too many bytes to be valid, which allows guest OS users to cause a denial of service (increased scheduling latency) on the host OS via unspecified manipulations related to SMP support.Enginsight
| Vendor | Product | Version |
|---|---|---|
| linux | linux_kernel | 𝑥 < 2.6.32 |
| linux | linux_kernel | 2.6.32 |
| linux | linux_kernel | 2.6.32:rc1 |
| linux | linux_kernel | 2.6.32:rc2 |
| linux | linux_kernel | 2.6.32:rc3 |
| linux | linux_kernel | 2.6.32:rc4 |
| linux | linux_kernel | 2.6.32:rc5 |
| linux | linux_kernel | 2.6.32:rc6 |
| linux | linux_kernel | 2.6.32:rc7 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| kvm |
| ||||||||||||||||
| linux |
| ||||||||||||||||
| linux-ec2 |
| ||||||||||||||||
| linux-fsl-imx51 |
| ||||||||||||||||
| linux-lts-backport-maverick |
| ||||||||||||||||
| linux-mvl-dove |
| ||||||||||||||||
| linux-source-2.6.15 |
| ||||||||||||||||
| linux-ti-omap4 |
| ||||||||||||||||
| qemu-kvm |
|
Common Weakness Enumeration
References