CVE-2010-2938
arch/x86/hvm/vmx/vmcs.c in the virtual-machine control structure (VMCS) implementation in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5, when an Intel platform without Extended Page Tables (EPT) functionality is used, accesses VMCS fields…
Does this matter?
Lower severity and a low EPSS score (0.35%). Track it; it rarely justifies an emergency change on its own.
Description
arch/x86/hvm/vmx/vmcs.c in the virtual-machine control structure (VMCS) implementation in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5, when an Intel platform without Extended Page Tables (EPT) functionality is used, accesses VMCS fields without verifying hardware support for these fields, which allows local users to cause a denial of service (host OS crash) by requesting a VMCS dump for a fully virtualized Xen guest.
- CVSS 2.0
- 4.9 MEDIUMAV:L/AC:L/Au:N/C:N/I:N/A:C
- EPSS
- 0.35% probability · 28th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-399
- Affected
- linux/linux kernel
- Source
- secalert@redhat.com
References
- http://secunia.com/advisories/46397
- http://support.avaya.com/css/P8/documents/100113326
- http://www.redhat.com/support/errata/RHSA-2010-0723.html
- http://www.securityfocus.com/archive/1/520102/100/0/threaded
- http://www.securityfocus.com/bid/43578
- http://www.vmware.com/security/advisories/VMSA-2011-0012.html
- http://xenbits.xensource.com/xen-unstable.hg?rev/15911
- https://bugzilla.redhat.com/show_bug.cgi?id=620490
- http://secunia.com/advisories/46397
- http://support.avaya.com/css/P8/documents/100113326
- http://www.redhat.com/support/errata/RHSA-2010-0723.html
- http://www.securityfocus.com/archive/1/520102/100/0/threaded
- http://www.securityfocus.com/bid/43578
- http://www.vmware.com/security/advisories/VMSA-2011-0012.html
- http://xenbits.xensource.com/xen-unstable.hg?rev/15911
- https://bugzilla.redhat.com/show_bug.cgi?id=620490
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.