Name | CVE-2009-2287 |
Description | The kvm_arch_vcpu_ioctl_set_sregs function in the KVM in Linux kernel 2.6 before 2.6.30, when running on x86 systems, does not validate the page table root in a KVM_SET_SREGS call, which allows local users to cause a denial of service (crash or hang) via a crafted cr3 value, which triggers a NULL pointer dereference in the gfn_to_rmap function. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
References | DSA-1845-1, DSA-1846-1 |
Debian Bugs | 557737 |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|---|---|---|---|---|---|
kvm | source | lenny | 72+dfsg-5~lenny2 | DSA-1846-1 | ||
kvm | source | (unstable) | 88+dfsg-2 | low | 557737 | |
linux-2.6 | source | lenny | 2.6.26-17lenny1 | DSA-1845-1 | ||
linux-2.6 | source | (unstable) | 2.6.30-2 | low | ||
linux-2.6.24 | source | (unstable) | (unfixed) |