SecBoard
Zurück zur CVE-Übersicht

CVE-2017-8106

MEDIUM(4.9)

AV:L/AC:L/Au:N/C:N/I:N/A:C

Risk Signal Score12/100 — NIEDRIG
  • CVSS 4.9 — Mittel

EPSS-Score

0%

Exploit-Wahrscheinlichkeit (30 Tage)

CVSS Score

4.9

Technische Schwere

Beschreibung

The handle_invept function in arch/x86/kvm/vmx.c in the Linux kernel 3.12 through 3.15 allows privileged KVM guest OS users to cause a denial of service (NULL pointer dereference and host OS crash) via a single-context INVEPT instruction with a NULL EPT pointer.

Referenzen