*** This bug is a security vulnerability *** Public security bug reported:
arch/x86/kvm/x86.c in the Linux kernel before 2.6.36.2 does not initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel stack memory via read operations on the /dev/kvm device. ** Affects: linux (Ubuntu) Importance: Low Assignee: Stefan Bader (stefan-bader-canonical) Status: Fix Released ** Affects: linux (Ubuntu Lucid) Importance: Undecided Status: New ** Affects: linux (Ubuntu Maverick) Importance: Low Status: Fix Released ** Affects: linux (Ubuntu Natty) Importance: Low Assignee: Stefan Bader (stefan-bader-canonical) Status: Fix Released ** Affects: linux (Ubuntu Dapper) Importance: Low Status: Invalid ** Affects: linux (Ubuntu Hardy) Importance: Undecided Status: New ** Affects: linux (Ubuntu Karmic) Importance: Undecided Status: New ** Tags: kernel-cve-tracker ** Visibility changed to: Public ** CVE added: http://www.cve.mitre.org/cgi- bin/cvename.cgi?name=2010-3881 ** Also affects: linux (Ubuntu Hardy) Importance: Undecided Status: New ** Also affects: linux (Ubuntu Natty) Importance: Low Assignee: Stefan Bader (stefan-bader-canonical) Status: In Progress ** Also affects: linux (Ubuntu Karmic) Importance: Undecided Status: New ** Also affects: linux (Ubuntu Dapper) Importance: Undecided Status: New ** Also affects: linux (Ubuntu Lucid) Importance: Undecided Status: New ** Also affects: linux (Ubuntu Maverick) Importance: Undecided Status: New -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/717124 Title: CVE-2010-3881 -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs