Lucene search

K
ubuntucveUbuntu.comUB:CVE-2014-3601
HistoryAug 31, 2014 - 12:00 a.m.

CVE-2014-3601

2014-08-3100:00:00
ubuntu.com
ubuntu.com
17

CVSS2

4.3

Attack Vector

ADJACENT_NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:A/AC:H/Au:S/C:N/I:N/A:C

EPSS

0.002

Percentile

61.1%

The kvm_iommu_map_pages function in virt/kvm/iommu.c in the Linux kernel
through 3.16.1 miscalculates the number of pages during the handling of a
mapping failure, which allows guest OS users to (1) cause a denial of
service (host OS memory corruption) or possibly have unspecified other
impact by triggering a large gfn value or (2) cause a denial of service
(host OS memory consumption) by triggering a small gfn value that leads to
permanently pinned pages.

Bugs

Notes

Author Note
jdstrand android kernels (flo, goldfish, grouper, maguro, mako and manta) are not supported on the Ubuntu Touch 14.04 preview kernels linux-lts-saucy no longer receives official support linux-lts-quantal no longer receives official support
OSVersionArchitecturePackageVersionFilename
ubuntu12.04noarchlinux< 3.2.0-69.103UNKNOWN
ubuntu14.04noarchlinux< 3.13.0-36.63UNKNOWN
ubuntu12.04noarchlinux-armadaxp< 3.2.0-1638.55UNKNOWN
ubuntu12.04noarchlinux-lts-trusty< 3.13.0-36.63~precise1UNKNOWN
ubuntu12.04noarchlinux-ti-omap4< 3.2.0-1453.73UNKNOWN

CVSS2

4.3

Attack Vector

ADJACENT_NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:A/AC:H/Au:S/C:N/I:N/A:C

EPSS

0.002

Percentile

61.1%