Lucene search

K
redhatcveRedhat.comRH:CVE-2020-27152
HistoryOct 16, 2020 - 6:30 a.m.

CVE-2020-27152

2020-10-1606:30:57
redhat.com
access.redhat.com
17
cve-2020-27152
stack overflow
kvm hypervisor
linux kernel
infinite loop
irq state
denial of service
system availability
mitigation
apicv
disabling

EPSS

0.001

Percentile

25.7%

A stack overflow flaw via an infinite loop condition issue was found in the KVM hypervisor of the Linux kernel. This flaw occurs while processing interrupts because the IRQ state is erroneously set. This flaw allows a guest user to crash the host kernel, resulting in a denial of service. The highest threat from this vulnerability is to system availability.

Mitigation

Disabling APICV by setting the kvm_intel.enable_apicv=0 parameter helps to avoid this situation.