kernel-rt is vulnerable to denial of service. A flaw was found in the Linux kernel’s Performance Events implementation. On systems with certain Intel processors, a local, unprivileged user could use this flaw to cause a denial of service by leveraging the perf subsystem to write into the reserved bits of the OFFCORE_RSP_0
and OFFCORE_RSP_1
model-specific registers.
git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=f1923820c447e986a9da0fc6bf60c1dccdf0408e
git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=f1923820c447e986a9da0fc6bf60c1dccdf0408e
rhn.redhat.com/errata/RHSA-2013-1173.html
www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.8.9
www.mandriva.com/security/advisories?name=MDVSA-2013:176
www.openwall.com/lists/oss-security/2013/06/05/23
access.redhat.com/security/updates/classification/#important
bugzilla.redhat.com/show_bug.cgi?id=971309
bugzilla.redhat.com/show_bug.cgi?id=974138
bugzilla.redhat.com/show_bug.cgi?id=983603
github.com/torvalds/linux/commit/f1923820c447e986a9da0fc6bf60c1dccdf0408e
rhn.redhat.com/errata/RHSA-2013-1264.html