CVE-2013-1798

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
6.2
MEDIUM
Affected
1
PROJECT

Description

The ioapic_read_indirect function in virt/kvm/ioapic.c in the Linux kernel through 3.8.4 does not properly handle a certain combination of invalid IOAPIC_REG_SELECT and IOAPIC_REG_WINDOW operations, which allows guest OS users to obtain sensitive information from host OS memory or cause a denial of service (host OS OOPS) via a crafted application.

Linux kernel source tree
GitHubGitHub
237K