7.1
CVSSv3

CVE-2016-3713

Published: 27/06/2016 Updated: 27/06/2016
CVSS v2 Base Score: 5.6 | Impact Score: 7.8 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.1 | Impact Score: 5.2 | Exploitability Score: 1.8
VMScore: 499
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:C

Vulnerability Summary

The msr_mtrr_valid function in arch/x86/kvm/mtrr.c in the Linux kernel prior to 4.6.1 supports MSR 0x2f8, which allows guest OS users to read or write to the kvm_arch_vcpu data structure, and consequently obtain sensitive information or cause a denial of service (system crash), via a crafted ioctl call.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

Vendor Advisories

Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...
Several security issues were fixed in the kernel ...