Lucene search

K
cvelistRedhatCVELIST:CVE-2009-3640
HistoryOct 29, 2009 - 2:00 p.m.

CVE-2009-3640

2009-10-2914:00:00
redhat
www.cve.org
2

8.8 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

The update_cr8_intercept function in arch/x86/kvm/x86.c in the KVM subsystem in the Linux kernel before 2.6.32-rc1 does not properly handle the absence of an Advanced Programmable Interrupt Controller (APIC), which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly gain privileges via a call to the kvm_vcpu_ioctl function.

8.8 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

Related for CVELIST:CVE-2009-3640