Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-3713

Опубликовано: 27 июн. 2016
Источник: nvd
CVSS3: 7.1
CVSS2: 5.6
EPSS Низкий

Описание

The msr_mtrr_valid function in arch/x86/kvm/mtrr.c in the Linux kernel before 4.6.1 supports MSR 0x2f8, which allows guest OS users to read or write to the kvm_arch_vcpu data structure, and consequently obtain sensitive information or cause a denial of service (system crash), via a crafted ioctl call.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 4.6 (включая)

EPSS

Процентиль: 28%
0.00097
Низкий

7.1 High

CVSS3

5.6 Medium

CVSS2

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 7.1
ubuntu
почти 9 лет назад

The msr_mtrr_valid function in arch/x86/kvm/mtrr.c in the Linux kernel before 4.6.1 supports MSR 0x2f8, which allows guest OS users to read or write to the kvm_arch_vcpu data structure, and consequently obtain sensitive information or cause a denial of service (system crash), via a crafted ioctl call.

redhat
около 9 лет назад

The msr_mtrr_valid function in arch/x86/kvm/mtrr.c in the Linux kernel before 4.6.1 supports MSR 0x2f8, which allows guest OS users to read or write to the kvm_arch_vcpu data structure, and consequently obtain sensitive information or cause a denial of service (system crash), via a crafted ioctl call.

CVSS3: 7.1
debian
почти 9 лет назад

The msr_mtrr_valid function in arch/x86/kvm/mtrr.c in the Linux kernel ...

CVSS3: 7.1
github
около 3 лет назад

The msr_mtrr_valid function in arch/x86/kvm/mtrr.c in the Linux kernel before 4.6.1 supports MSR 0x2f8, which allows guest OS users to read or write to the kvm_arch_vcpu data structure, and consequently obtain sensitive information or cause a denial of service (system crash), via a crafted ioctl call.

oracle-oval
больше 6 лет назад

ELSA-2018-4301: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS

Процентиль: 28%
0.00097
Низкий

7.1 High

CVSS3

5.6 Medium

CVSS2

Дефекты

CWE-284