CVE-2010-3698
Last modified
CVE-2010-3698 is a vulnerability of currently unknown severity. The KVM implementation in the Linux kernel before 2.6.36 does not properly reload the FS and GS segment registers, which allows host OS users to cause a denial of service (host OS crash) via a KVM_RUN ioctl call in conjunction with a modified Local Descriptor Table (LDT).. EPSS estimates a 0.42% chance of exploitation in the next 30 days.
Description
The KVM implementation in the Linux kernel before 2.6.36 does not properly reload the FS and GS segment registers, which allows host OS users to cause a denial of service (host OS crash) via a KVM_RUN ioctl call in conjunction with a modified Local Descriptor Table (LDT).
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | < 2.6.36 |
| Fedoraproject | Fedora | 13 |
References
- http://secunia.com/advisories/42745Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:029Third Party Advisory
- http://www.redhat.com/support/errata/RHSA-2010-0842.htmlThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2010-0898.htmlThird Party Advisory
- http://www.securityfocus.com/bid/44500Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2010/3123Third Party Advisory
- http://www.vupen.com/english/advisories/2010/3321Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=639879Issue Tracking, Third Party Advisory
- http://secunia.com/advisories/42745Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:029Third Party Advisory
- http://www.redhat.com/support/errata/RHSA-2010-0842.htmlThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2010-0898.htmlThird Party Advisory
- http://www.securityfocus.com/bid/44500Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2010/3123Third Party Advisory
- http://www.vupen.com/english/advisories/2010/3321Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=639879Issue Tracking, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2010-3698?
How severe is CVE-2010-3698?
How do I fix CVE-2010-3698?
Are you affected by CVE-2010-3698?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
