[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2019:2854-01 -- Redhat kpatch-patch

ID: oval:org.secpod.oval:def:503348Date: (C)2020-11-06   (M)2024-04-17
Class: PATCHFamily: unix




This is a kernel live patch module which can be loaded by the kpatch command line utility to modify the code of a running kernel. Security Fix: * A buffer overflow flaw was found in the way Linux kernel"s vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descriptors with invalid length to the host when migration is underway, could use this flaw to increase their privileges on the host. For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section.

Platform:
Red Hat Enterprise Linux 7
Product:
kpatch-patch
Reference:
RHSA-2019:2854-01
CVE-2019-14835
CVE    1
CVE-2019-14835
CPE    3
cpe:/o:redhat:enterprise_linux:7
cpe:/a:linux:kpatch-patch
cpe:/o:redhat:enterprise_linux:7.0

© SecPod Technologies