CVE-2014-3646

Published
View on NVD ↗
CVSS v3
5.5
MEDIUM
CVSS v2
4.7
MEDIUM
Affected
1
PROJECT

Description

arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel through 3.17.2 does not have an exit handler for the INVVPID instruction, which allows guest OS users to cause a denial of service (guest OS crash) via a crafted application.

Linux kernel source tree
GitHubGitHub
237K