*** This bug is a security vulnerability ***

Public security bug reported:

arch/x86/kvm/x86.c in the Linux kernel before 2.6.36.2 does not
initialize certain structure members, which allows local users to obtain
potentially sensitive information from kernel stack memory via read
operations on the /dev/kvm device.

** Affects: linux (Ubuntu)
     Importance: Low
     Assignee: Stefan Bader (stefan-bader-canonical)
         Status: Fix Released

** Affects: linux (Ubuntu Lucid)
     Importance: Undecided
         Status: New

** Affects: linux (Ubuntu Maverick)
     Importance: Low
         Status: Fix Released

** Affects: linux (Ubuntu Natty)
     Importance: Low
     Assignee: Stefan Bader (stefan-bader-canonical)
         Status: Fix Released

** Affects: linux (Ubuntu Dapper)
     Importance: Low
         Status: Invalid

** Affects: linux (Ubuntu Hardy)
     Importance: Undecided
         Status: New

** Affects: linux (Ubuntu Karmic)
     Importance: Undecided
         Status: New


** Tags: kernel-cve-tracker

** Visibility changed to: Public

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2010-3881

** Also affects: linux (Ubuntu Hardy)
   Importance: Undecided
       Status: New

** Also affects: linux (Ubuntu Natty)
   Importance: Low
     Assignee: Stefan Bader (stefan-bader-canonical)
       Status: In Progress

** Also affects: linux (Ubuntu Karmic)
   Importance: Undecided
       Status: New

** Also affects: linux (Ubuntu Dapper)
   Importance: Undecided
       Status: New

** Also affects: linux (Ubuntu Lucid)
   Importance: Undecided
       Status: New

** Also affects: linux (Ubuntu Maverick)
   Importance: Undecided
       Status: New

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/717124

Title:
  CVE-2010-3881

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to