Wind River Support Network

HomeDefectsLIN5-18422
Fixed

LIN5-18422 : Security Advisory - linux - CVE-2014-0055

Created: Mar 30, 2014    Updated: Dec 19, 2017
Resolved Date: Apr 16, 2014
Found In Version: 5.0.1.14
Fix Version: 5.0.1.14
Severity: Standard
Applicable for: Wind River Linux 5
Component/s: Kernel

Description

The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsystem in the Linux kernel package before 2.6.32-431.11.2 on Red Hat Enterprise Linux (RHEL) 6 does not properly handle vhost_get_vq_desc errors, which allows guest OS users to cause a denial of service (host OS crash) via unspecified vectors.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-0055

Other Downloads


Live chat
Online