Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-14835

Опубликовано: 17 сент. 2019
Источник: redhat
CVSS3: 7.2
EPSS Низкий

Описание

A buffer overflow flaw was found, in versions from 2.6.34 to 5.2.x, in the way Linux kernel's vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descriptors with invalid length to the host when migration is underway, could use this flaw to increase their privileges on the host.

A buffer overflow flaw was found in the way Linux kernel's vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descriptors with invalid length to the host when migration is underway, could use this flaw to increase their privileges on the host. In the worst case (and likely most common virtualization) scenario this flaw affects KVM/qemu hypervisor enabled hosts running Linux guests.

Отчет

Red Hat Product Security is aware of this issue. Updates will be released as they become available. For additional information, please refer to the Red Hat Knowledgebase article: https://access.redhat.com/security/vulnerabilities/kernel-vhost

Меры по смягчению последствий

For mitigation related information, please refer to the Red Hat Knowledgebase article: https://access.redhat.com/security/vulnerabilities/kernel-vhost

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5kernelNot affected
Red Hat Enterprise Linux 6kernelFixedRHSA-2019:286323.09.2019
Red Hat Enterprise Linux 6.5 Advanced Update SupportkernelFixedRHSA-2019:290125.09.2019
Red Hat Enterprise Linux 6.6 Advanced Update SupportkernelFixedRHSA-2019:286923.09.2019
Red Hat Enterprise Linux 7kernel-rtFixedRHSA-2019:283020.09.2019
Red Hat Enterprise Linux 7kernelFixedRHSA-2019:282920.09.2019
Red Hat Enterprise Linux 7kpatch-patchFixedRHSA-2019:285421.09.2019
Red Hat Enterprise Linux 7kernel-altFixedRHSA-2019:286223.09.2019
Red Hat Enterprise Linux 7.2 Advanced Update SupportkernelFixedRHSA-2019:289925.09.2019
Red Hat Enterprise Linux 7.2 Telco Extended Update SupportkernelFixedRHSA-2019:289925.09.2019

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-120
https://bugzilla.redhat.com/show_bug.cgi?id=1750727kernel: vhost-net: guest to host kernel escape during migration

EPSS

Процентиль: 9%
0.00035
Низкий

7.2 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 6 лет назад

A buffer overflow flaw was found, in versions from 2.6.34 to 5.2.x, in the way Linux kernel's vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descriptors with invalid length to the host when migration is underway, could use this flaw to increase their privileges on the host.

CVSS3: 7.8
nvd
почти 6 лет назад

A buffer overflow flaw was found, in versions from 2.6.34 to 5.2.x, in the way Linux kernel's vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descriptors with invalid length to the host when migration is underway, could use this flaw to increase their privileges on the host.

CVSS3: 7.8
debian
почти 6 лет назад

A buffer overflow flaw was found, in versions from 2.6.34 to 5.2.x, in ...

suse-cvrf
больше 5 лет назад

Security update for the Linux Kernel (Live Patch 27 for SLE 12 SP2)

suse-cvrf
больше 5 лет назад

Security update for the Linux Kernel (Live Patch 0 for SLE 15 SP1)

EPSS

Процентиль: 9%
0.00035
Низкий

7.2 High

CVSS3

Уязвимость CVE-2019-14835