[kernel-sec-discuss] r5057 - dsa-texts

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Mar 8 09:32:38 UTC 2017


Author: carnil
Date: 2017-03-08 09:32:37 +0000 (Wed, 08 Mar 2017)
New Revision: 5057

Modified:
   dsa-texts/3.16.39-1+deb8u2
Log:
Add potential description for CVE-2016-9588

Modified: dsa-texts/3.16.39-1+deb8u2
===================================================================
--- dsa-texts/3.16.39-1+deb8u2	2017-03-08 09:25:59 UTC (rev 5056)
+++ dsa-texts/3.16.39-1+deb8u2	2017-03-08 09:32:37 UTC (rev 5057)
@@ -8,6 +8,12 @@
 impacts.
 
 CVE-2016-9588
+
+    Jim Mattson discovered that the KVM implementation does not properly
+    handle #BP and #OF exceptions. A local attacker in a guest virtual
+    machine can take advantage of this flaw to cause a denial of service
+    (guest OS crash).
+
 CVE-2017-2636
 
     Alexander Popov discovered a race condition flaw in the N_HLDC when




More information about the kernel-sec-discuss mailing list