Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-1158
HistoryAug 05, 2022 - 5:15 p.m.

Race condition

2022-08-0517:15:00
PRIOn knowledge base
www.prio-n.com
16

7.1 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

A flaw was found in KVM. When updating a guest’s page table entry, vm_pgoff was improperly used as the offset to get the page’s pfn. As vaddr and vm_pgoff are controllable by user-mode processes, this flaw allows unprivileged local users on the host to write outside the userspace region and potentially corrupt the kernel, resulting in a denial of service condition.