CVE
- Id
- 70906
- CVE No.
- CVE-2014-3610
- Status
- Candidate
- Description
- The WRMSR processing functionality in the KVM subsystem in the Linux kernel through 3.17.2 does not properly handle the writing of a non-canonical address to a model-specific register, which allows guest OS users to cause a denial of service (host OS crash) by leveraging guest OS privileges, related to the wrmsr_interception function in arch/x86/kvm/svm.c and the handle_wrmsr function in arch/x86/kvm/vmx.c.
- Phase
- Assigned (20140514)
- Votes
- None (candidate not yet proposed)
- Comments