Back

HIGH

Kernel: KVM: MMU potential stack buffer overrun during page walks

Published Oct 11, 2017

Description

arch/x86/kvm/mmu.c in the Linux kernel through 4.13.5, when nested virtualisation is used, does not properly traverse guest pagetable entries to resolve a guest virtual address, which allows L1 guest OS users to execute arbitrary code on the host OS or cause a denial of service (incorrect index during page walking, and host OS crash), aka an "MMU potential stack buffer overrun."

Affected products

Remediation

Red Hat statement

This issue does not affect the versions of the kernel package as shipped with Red Hat Enterprise Linux 5, 6 and Red Hat Enterprise MRG 2.

Metrics

References (9)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Oct 11, 2017
Updated Aug 5, 2024
Reserved Aug 1, 2017
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Important
Public date Oct 10, 2017