UBUNTU-CVE-2016-9588
arch/x86/kvm/vmx.c in the Linux kernel through 4.9 mismanages the #BP and #OF exceptions, which allows guest OS users to cause a denial of service (guest OS crash) by declining to handle an exception thrown by an L2 guest.
02 / AFFECTED SOFTWARE
Affected packages
140 explicit affected versions
21 explicit affected versions
41 explicit affected versions
1 explicit affected versions
20 explicit affected versions
16 explicit affected versions
26 explicit affected versions
51 explicit affected versions
78 explicit affected versions
6 explicit affected versions
12 explicit affected versions
1 explicit affected versions
1 explicit affected versions
23 explicit affected versions
7 explicit affected versions
7 explicit affected versions
8 explicit affected versions
7 explicit affected versions
1 explicit affected versions
1 explicit affected versions
24 explicit affected versions
61 explicit affected versions
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
arch/x86/kvm/vmx.c in the Linux kernel through 4.9 mismanages the #BP and #OF exceptions, which allows guest OS users to cause a denial of service (guest OS crash) by declining to handle an exception thrown by an L2 guest.
05 / REFERENCES
Further evidence
- https://ubuntu.com/security/CVE-2016-9588
- https://ubuntu.com/security/notices/USN-3208-1
- https://ubuntu.com/security/notices/USN-3208-2
- https://ubuntu.com/security/notices/USN-3209-1
- https://ubuntu.com/security/notices/USN-3822-1
- https://ubuntu.com/security/notices/USN-3822-2
- https://www.cve.org/CVERecord?id=CVE-2016-9588
- https://www.spinics.net/lists/kvm/msg142495.html