CVE-2012-0045

Priority
Medium
Description
The em_syscall function in arch/x86/kvm/emulate.c in the KVM implementation
in the Linux kernel before 3.2.14 does not properly handle the 0f05 (aka
syscall) opcode, which allows guest OS users to cause a denial of service
(guest OS crash) via a crafted application, as demonstrated by an NASM
file.
Ubuntu-Description
Stephan Bärwolf discovered a flaw in the KVM (kernel-based virtual machine)
subsystem of the Linux kernel. A local unprivileged user can crash use this
flaw to crash VMs causing a deny of service.
References
Bugs
Notes
apw> introduced by: e66bb2ccdcf76d032bbb464b35c292bb3ee58f9b
apw> current patches appear to be on github but not approved and merged:
apw> https://github.com/baerwolf/linux-stephan/commit/a5fad9d83c19a4af9f41b48d78eb1688c8289c7e
apw> now upstream (see below)
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):not-affected (3.13.0-24.46~precise1)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Ubuntu 14.10 (Utopic Unicorn):DNE
Ubuntu 15.04 (Vivid Vervet):DNE
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):not-affected (3.2.0-1601.4)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Ubuntu 14.10 (Utopic Unicorn):DNE
Ubuntu 15.04 (Vivid Vervet):DNE
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):released (2.6.32-345.47)
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Ubuntu 14.10 (Utopic Unicorn):DNE
Ubuntu 15.04 (Vivid Vervet):DNE
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):released (3.0.0-18.31~lucid1)
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Ubuntu 14.10 (Utopic Unicorn):DNE
Ubuntu 15.04 (Vivid Vervet):DNE
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):needs-triage
Ubuntu 14.10 (Utopic Unicorn):needs-triage
Ubuntu 15.04 (Vivid Vervet):needs-triage
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):not-affected (3.4.0-1.9)
Ubuntu 14.10 (Utopic Unicorn):not-affected (3.4.0-3.14)
Ubuntu 15.04 (Vivid Vervet):not-affected (3.4.0-4.23)
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):released (2.6.38-14.58~lucid1)
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Ubuntu 14.10 (Utopic Unicorn):DNE
Ubuntu 15.04 (Vivid Vervet):DNE
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):not-affected (3.4.0-1.3)
Ubuntu 14.10 (Utopic Unicorn):not-affected (3.4.0-3.10)
Ubuntu 15.04 (Vivid Vervet):not-affected (3.4.0-3.15)
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):not-affected
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Ubuntu 14.10 (Utopic Unicorn):DNE
Ubuntu 15.04 (Vivid Vervet):DNE
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):released (2.6.35-32.68~lucid1)
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Ubuntu 14.10 (Utopic Unicorn):DNE
Ubuntu 15.04 (Vivid Vervet):DNE
Package
Source: linux (LP Ubuntu Debian)
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):released (2.6.32-41.88)
Ubuntu 12.04 LTS (Precise Pangolin):not-affected (3.2.0-19.30)
Ubuntu 14.04 LTS (Trusty Tahr):not-affected (3.11.0-12.19)
Ubuntu 14.10 (Utopic Unicorn):not-affected (3.13.0-24.46)
Ubuntu 15.04 (Vivid Vervet):not-affected (3.16.0-23.31)
Patches:
Introduced by e66bb2ccdcf76d032bbb464b35c292bb3ee58f9bFixed by bdb42f5afebe208eae90406959383856ae2caf2b
Introduced by e66bb2ccdcf76d032bbb464b35c292bb3ee58f9bFixed by c2226fc9e87ba3da060e47333657cd6616652b84
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):needs-triage
Ubuntu 14.10 (Utopic Unicorn):DNE
Ubuntu 15.04 (Vivid Vervet):DNE
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):not-affected (3.2.0-1412.15)
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Ubuntu 14.10 (Utopic Unicorn):DNE
Ubuntu 15.04 (Vivid Vervet):DNE
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):not-affected (3.4.0-3.21)
Ubuntu 14.10 (Utopic Unicorn):not-affected (3.4.0-5.28)
Ubuntu 15.04 (Vivid Vervet):not-affected (3.4.0-5.34)
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):not-affected
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Ubuntu 14.10 (Utopic Unicorn):DNE
Ubuntu 15.04 (Vivid Vervet):DNE
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):not-affected (3.16.0-25.33~14.04.2)
Ubuntu 14.10 (Utopic Unicorn):DNE
Ubuntu 15.04 (Vivid Vervet):DNE
Package
Upstream:released (3.3~rc3)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):not-affected (3.4.0-4.19)
Ubuntu 14.10 (Utopic Unicorn):not-affected (3.4.0-6.25)
Ubuntu 15.04 (Vivid Vervet):not-affected (3.4.0-6.29)
More Information

Valid XHTML 1.0 Strict

Updated: 2014-12-05 14:14:39 UTC (commit 8802)