Geeks for your information
DoS Vulnerabilities Found in Linux Kernel, Unpatched - Printable Version

+- Geeks for your information (https://www.geeks.fyi)
+-- Forum: News (https://www.geeks.fyi/forumdisplay.php?fid=105)
+--- Forum: Privacy & Security News (https://www.geeks.fyi/forumdisplay.php?fid=107)
+--- Thread: DoS Vulnerabilities Found in Linux Kernel, Unpatched (/showthread.php?tid=4607)



DoS Vulnerabilities Found in Linux Kernel, Unpatched - silversurfer - 24 November 18

Quote:Two denial-of-service (DoS) vulnerabilities found in the Linux Kernel by contributor Wanpeng Li could allow local attackers to exploit null pointer deference bugs to trigger DoS conditions.

The first vulnerability, which received the CVE-2018-19406 ID in the Common Vulnerabilities and Exposures database, resides in the kvm_pv_send_ipi function of the Linux kernel, defined in the arch/x86/kvm/lapic.c file.

The second vulnerability found by Li can also be exploited only by attackers that have physical access to the vulnerable Linux machine. The issue got assigned the CVE-2018-19407 ID by the CVE database, and it is present in the kvm_pv_send_ipi function kernel function that can be found in the Arch/x86/kvm/lapic.c source code file.

Source: https://news.softpedia.com/news/dos-vulnerabilities-found-in-linux-kernel-unpatched-523955.shtml