** Changed in: linux-armadaxp (Ubuntu Precise)
Status: New => Invalid
** Changed in: linux-ec2 (Ubuntu Lucid)
Status: New => Invalid
** Changed in: linux (Ubuntu Precise)
Status: New => Invalid
** Changed in: linux (Ubuntu Lucid)
Status: New => Invalid
** Changed in: linux (Ubuntu Trusty)
Status: New => Invalid
** Changed in: linux-ti-omap4 (Ubuntu Precise)
Status: New => Invalid
** Description changed:
- kvm: mmio_fragments out-of-the-bounds access
+ Buffer overflow in the complete_emulated_mmio function in
+ arch/x86/kvm/x86.c in the Linux kernel before 3.13.6 allows guest OS
+ users to execute arbitrary code on the host OS by leveraging a loop that
+ triggers an invalid memory copy affecting certain cancel_work_item data.
Break-Fix: f78146b0f9230765c6315b2e14f56112513389ad
a08d3b3b99efd509133946056531cdf8f3a0c09b
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1289728
Title:
CVE-2014-0049
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1289728/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs