MEDIUM
kernel: guest crashes on non-EPT machines may crash the host as well
Published Oct 8, 2010
4.9
MEDIUMCVSS 2.0
EPSS 0.35%
Description
arch/x86/hvm/vmx/vmcs.c in the virtual-machine control structure (VMCS) implementation in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5, when an Intel platform without Extended Page Tables (EPT) functionality is used, accesses VMCS fields without verifying hardware support for these fields, which allows local users to cause a denial of service (host OS crash) by requesting a VMCS dump for a fully virtualized Xen guest.
Affected products
No data.
AND
- 2.6.18
Running on/with
- 5
No data.
Red Hat Enterprise Linux 5
kernel-0:2.6.18-194.17.1.el5
Fixed · RHSA-2010:0723
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 5 | kernel-0:2.6.18-194.17.1.el5 | Fixed | RHSA-2010:0723 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (12)
- http://secunia.com/advisories/46397 third-party-advisoryx_refsource_SECUNIA
- http://support.avaya.com/css/P8/documents/100113326 x_refsource_CONFIRM
- http://www.redhat.com/support/errata/RHSA-2010-0723.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/archive/1/520102/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/43578 vdb-entryx_refsource_BID
- http://www.vmware.com/security/advisories/VMSA-2011-0012.html x_refsource_CONFIRM
- http://xenbits.xensource.com/xen-unstable.hg?rev/15911 x_refsource_CONFIRM
- https://access.redhat.com/security/cve/CVE-2010-2938 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=620490 x_refsource_CONFIRMIssue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2010-2942 Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2010-2938
- https://www.cve.org/CVERecord?id=CVE-2010-2938
| Link | Providers | Tags |
|---|---|---|
| http://secunia.com/advisories/46397 | third-party-advisoryx_refsource_SECUNIA | |
| http://support.avaya.com/css/P8/documents/100113326 | x_refsource_CONFIRM | |
| http://www.redhat.com/support/errata/RHSA-2010-0723.html | vendor-advisoryx_refsource_REDHAT | |
| http://www.securityfocus.com/archive/1/520102/100/0/threaded | mailing-listx_refsource_BUGTRAQ | |
| http://www.securityfocus.com/bid/43578 | vdb-entryx_refsource_BID | |
| http://www.vmware.com/security/advisories/VMSA-2011-0012.html | x_refsource_CONFIRM | |
| http://xenbits.xensource.com/xen-unstable.hg?rev/15911 | x_refsource_CONFIRM | |
| https://access.redhat.com/security/cve/CVE-2010-2938 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=620490 | x_refsource_CONFIRMIssue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2010-2942 | Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2010-2938 | ||
| https://www.cve.org/CVERecord?id=CVE-2010-2938 |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Oct 8, 2010
Updated Aug 7, 2024
Reserved Aug 4, 2010
Link CVE-2010-2938
CISA Vulnrichment
No data
GitHub
No data