The paravirt_ops_setup function in arch/x86/kernel/kvm.c in the Linux kernel up to and including 3.18 uses an improper paravirt_enabled setting for KVM guest kernels, which makes it easier for guest OS users to bypass the ASLR protection mechanism via a crafted application that reads a 16-bit value.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
linux linux kernel |
||
canonical ubuntu linux 16.04 |
||
canonical ubuntu linux 12.04 |
||
canonical ubuntu linux 14.04 |
||
opensuse evergreen 11.4 |
||
opensuse opensuse 13.1 |
||
suse suse linux enterprise server 11 |
||
oracle linux 6 |