Fixed
Created: Feb 14, 2019
Updated: Mar 27, 2019
Resolved Date: Mar 12, 2019
Found In Version: 10.17.41.1
Fix Version: 10.17.41.15
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Kernel
An information leakage issue was found in the way Linux kernel's KVM hypervisor handled page fault exception while emulating instructions like VMXON, VMCLEAR, VMPTRLD, VMWRITE with memory address as an operand. It occurs if the operand is an mmio address, as the returned exception object holds uninitialised stack memory Contents.
https://nvd.nist.gov/vuln/detail/CVE-2019-7222