Wind River Support Network

HomeDefectsLIN10-7025
Fixed

LIN10-7025 : Security Advisory - linux - CVE-2019-3016

Created: Feb 16, 2020    Updated: May 13, 2022
Resolved Date: Apr 1, 2020
Found In Version: 10.17.41.1
Fix Version: 10.17.41.20
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Kernel

Description

In a Linux KVM guest that has PV TLB enabled, a process in the guest kernel may be able to read memory locations from another process in the same guest. This problem is limit to the host running linux kernel 4.10 with a guest running linux kernel 4.16 or later. The problem mainly affects AMD processors but Intel CPUs cannot be ruled out.

CREATE(Triage):(User=admin) CVE-2019-3016 (https://nvd.nist.gov/vuln/detail/CVE-2019-3016)

CVEs


Live chat
Online