Wind River Support Network

HomeDefectsSCP6-530
Fixed

SCP6-530 : Security Advisory - linux - CVE-2014-8134

Created: Dec 22, 2014    Updated: Dec 3, 2018
Resolved Date: Dec 29, 2014
Previous ID: LIN4-32123
Found In Version: 6.0.0.15
Fix Version: 6.0.0.17
Severity: Standard
Applicable for: Wind River Linux 6
Component/s: Kernel

Description

The paravirt_ops_setup function in arch/x86/kernel/kvm.c in the Linux kernel through 3.18 uses an improper paravirt_enabled setting for KVM guest kernels, which makes it easier for guest OS users to bypass the ASLR protection mechanism via a crafted application that reads a 16-bit value.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-8134

Other Downloads


Live chat
Online