Back

MEDIUM

kernel: KVM: x86: check for cr3 validity in ioctl_set_sregs

Published Jul 1, 2009

Description

The kvm_arch_vcpu_ioctl_set_sregs function in the KVM in Linux kernel 2.6 before 2.6.30, when running on x86 systems, does not validate the page table root in a KVM_SET_SREGS call, which allows local users to cause a denial of service (crash or hang) via a crafted cr3 value, which triggers a NULL pointer dereference in the gfn_to_rmap function.

Affected products

Remediation

Red Hat statement

Not vulnerable. This issue did not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 3, 4, and 5, and Red Hat Enterprise MRG.

Metrics

References (14)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jul 1, 2009
Updated Aug 7, 2024
Reserved Jul 1, 2009
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Important
Public date Mar 15, 2009