MEDIUM
kvm: emulator privilege escalation segment selector check
Published Mar 5, 2010
4.4
MEDIUMCVSS 2.0
EPSS 0.35%
Description
The x86 emulator in KVM 83, when a guest is configured for Symmetric Multiprocessing (SMP), does not properly restrict writing of segment selectors to segment registers, which might allow guest OS users to cause a denial of service (guest OS crash) or gain privileges on the guest OS by leveraging access to a (1) IO port or (2) MMIO region, and replacing an instruction in between emulator entry and instruction fetch.
Affected products
No data.
- 83
No data.
Red Hat Enterprise Linux 5
kvm-0:83-105.el5_4.27
Fixed · RHSA-2010:0126
Red Hat Enterprise Virtualization for RHEL-5
rhev-hypervisor-0:5.4-2.1.10.el5_4rhev2_1
Fixed · RHSA-2010:0172
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 5 | kvm-0:83-105.el5_4.27 | Fixed | RHSA-2010:0126 |
| Red Hat Enterprise Virtualization for RHEL-5 | rhev-hypervisor-0:5.4-2.1.10.el5_4rhev2_1 | Fixed | RHSA-2010:0172 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (9)
- http://securitytracker.com/id?1023663 vdb-entryx_refsource_SECTRACK
- http://www.redhat.com/support/errata/RHSA-2010-0126.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/bid/38467 vdb-entryx_refsource_BID
- https://access.redhat.com/security/cve/CVE-2010-0419 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=563463 x_refsource_CONFIRMIssue Tracking
- https://exchange.xforce.ibmcloud.com/vulnerabilities/56662 vdb-entryx_refsource_XF
- https://nvd.nist.gov/vuln/detail/CVE-2010-0419
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10139 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2010-0419
| Link | Providers | Tags |
|---|---|---|
| http://securitytracker.com/id?1023663 | vdb-entryx_refsource_SECTRACK | |
| http://www.redhat.com/support/errata/RHSA-2010-0126.html | vendor-advisoryx_refsource_REDHAT | |
| http://www.securityfocus.com/bid/38467 | vdb-entryx_refsource_BID | |
| https://access.redhat.com/security/cve/CVE-2010-0419 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=563463 | x_refsource_CONFIRMIssue Tracking | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/56662 | vdb-entryx_refsource_XF | |
| https://nvd.nist.gov/vuln/detail/CVE-2010-0419 | ||
| https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10139 | vdb-entrysignaturex_refsource_OVAL | |
| https://www.cve.org/CVERecord?id=CVE-2010-0419 |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Mar 5, 2010
Updated Aug 7, 2024
Reserved Jan 27, 2010
Link CVE-2010-0419
CISA Vulnrichment
Updated n/a