Home→Descriptions→SA47431
| Secunia ID | |
| CVE-ID | |
| Release Date |
05 Jan 2012 |
| Criticality | |
| Solution Status |
Unpatched |
| Where | |
| Impact |
DoS (Denial of Service)This includes vulnerabilities ranging from excessive resource consumption (e.g. causing a system to use a lot of memory) to crashing an application or an entire system. |
| Description |
A vulnerability has been reported in the Linux Kernel, which can be exploited by malicious, local users to cause a DoS (Denial of Service). The vulnerability is caused due to KVM not properly restricting the KVM_ASSIGN_PCI_DEVICE IOCTL, which can be exploited to stop PCI devices from working by sending specially crafted IOCTLs. |
| Solution |
Restrict access to trusted users only. |
| Reported by |
Sasha Levin |
| Original Advisory |
http://thread.gmane.org/gmane.comp.emulators.kvm.devel/82043 |