CVE Database
/

CVE-2010-0419

Back to search

CVE-2010-0419

Published: Mar 5, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

The x86 emulator in KVM 83, when a guest is configured for Symmetric Multiprocessing (SMP), does not properly restrict writing of segment selectors to segment registers, which might allow guest OS users to cause a denial of service (guest OS crash) or gain privileges on the guest OS by leveraging access to a (1) IO port or (2) MMIO region, and replacing an instruction in between emulator entry and instruction fetch.

VendorProductVersions

n/a

n/a

affected
n/a

References

38467
vdb-entry
x_refsource_BID
RHSA-2010:0126
vendor-advisory
x_refsource_REDHAT
1023663
vdb-entry
x_refsource_SECTRACK
oval:org.mitre.oval:def:10139
vdb-entry
signature
x_refsource_OVAL

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now