CVE-2014-3646
Published
CVSS v3
5.5
MEDIUM
CVSS v2
4.7
MEDIUM
Affected
1
PROJECT
Description
arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel through 3.17.2 does not have an exit handler for the INVVPID instruction, which allows guest OS users to cause a denial of service (guest OS crash) via a crafted application.