Back

MEDIUM

Kernel: kvm: nVMX: L2 guest may trick the L0 hypervisor to access sensitive L1 resources

Published Apr 8, 2020

Description

A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 guest when nested virtualisation is enabled. Under some circumstances, an L2 guest may trick the L0 guest into accessing sensitive L1 resources that should be inaccessible to the L2 guest.

Affected products

Remediation

No remediation recorded yet.

References (18)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner oracle
Published Apr 8, 2020
Updated Sep 30, 2024
Reserved Dec 10, 2019

CISA Vulnrichment

Updated Sep 30, 2024

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

Severity Moderate
Public date Feb 24, 2020
Bugzilla 1805135

ENISA EUVD

Assigner oracle
Published Apr 8, 2020
Updated Sep 30, 2024

GitHub

No data