CVE-2014-0049 - CERT CVE
ID CVE-2014-0049
Sažetak Buffer overflow in the complete_emulated_mmio function in arch/x86/kvm/x86.c in the Linux kernel before 3.13.6 allows guest OS users to execute arbitrary code on the host OS by leveraging a loop that triggers an invalid memory copy affecting certain cancel_work_item data.
Reference
CVSS
Base: 7.4
Impact: 10.0
Exploitability:4.4
Pristup
VektorSloženostAutentikacija
ADJACENT_NETWORK MEDIUM SINGLE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE COMPLETE COMPLETE
CVSS vektor AV:A/AC:M/Au:S/C:C/I:C/A:C
Zadnje važnije ažuriranje 13-02-2023 - 00:30
Objavljeno 11-03-2014 - 13:01