Array index error in the kvm_vm_ioctl_create_vcpu function in virt/kvm/kvm_main.c in the KVM subsystem in the Linux kernel through 3.12.5 allows local users to gain privileges via a large id value.
2013-12-14T18:08:45.590
2025-04-11T00:51:21.963
Deferred
CVSSv2: 7.2 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | < 3.2.54 | Yes |
Operating System | linux | linux_kernel | < 3.4.75 | Yes |
Operating System | linux | linux_kernel | < 3.10.25 | Yes |
Operating System | linux | linux_kernel | < 3.12.6 | Yes |
Operating System | opensuse | opensuse | 11.4 | Yes |
Operating System | opensuse | opensuse | 12.3 | Yes |
Operating System | opensuse | opensuse | 13.1 | Yes |