Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vx6h-cqmq-qj84

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

In arch/x86/kvm/vmx.c in the Linux kernel before 4.17.2, when nested virtualization is used, local attackers could cause L1 KVM guests to VMEXIT, potentially allowing privilege escalations and denial of service attacks due to lack of checking of CPL.

In arch/x86/kvm/vmx.c in the Linux kernel before 4.17.2, when nested virtualization is used, local attackers could cause L1 KVM guests to VMEXIT, potentially allowing privilege escalations and denial of service attacks due to lack of checking of CPL.

EPSS

Процентиль: 40%
0.00182
Низкий

4.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.9
ubuntu
больше 7 лет назад

In arch/x86/kvm/vmx.c in the Linux kernel before 4.17.2, when nested virtualization is used, local attackers could cause L1 KVM guests to VMEXIT, potentially allowing privilege escalations and denial of service attacks due to lack of checking of CPL.

CVSS3: 7.8
redhat
больше 7 лет назад

In arch/x86/kvm/vmx.c in the Linux kernel before 4.17.2, when nested virtualization is used, local attackers could cause L1 KVM guests to VMEXIT, potentially allowing privilege escalations and denial of service attacks due to lack of checking of CPL.

CVSS3: 4.9
nvd
больше 7 лет назад

In arch/x86/kvm/vmx.c in the Linux kernel before 4.17.2, when nested virtualization is used, local attackers could cause L1 KVM guests to VMEXIT, potentially allowing privilege escalations and denial of service attacks due to lack of checking of CPL.

CVSS3: 4.9
debian
больше 7 лет назад

In arch/x86/kvm/vmx.c in the Linux kernel before 4.17.2, when nested v ...

suse-cvrf
больше 7 лет назад

Security update for the Linux Kernel (Live Patch 0 for SLE 15)

EPSS

Процентиль: 40%
0.00182
Низкий

4.9 Medium

CVSS3