GSD-2022-1000611

Source
https://data.gsd.id/GSD-2022-1000611
Import Source
https://github.com/cloudsecurityalliance/gsd-database/blob/main/2022/1000xxx/GSD-2022-1000611.json
JSON Data
https://api.osv.dev/v1/vulns/GSD-2022-1000611
Published
2022-02-27T03:31:08Z
Modified
2023-02-22T10:01:55Z
Summary
KVM: x86: Free kvm_cpuid_entry2 array on post-KVM_RUN KVM_SET_CPUID{,2}
Details

KVM: x86: Free kvm_cpuid_entry2 array on post-KVM_RUN KVM_SET_CPUID{,2}

This is an automated ID intended to aid in discovery of potential security vulnerabilities. The actual impact and attack plausibility have not yet been proven. This ID is fixed in Linux Kernel version v5.16.5 by commit b9ee734a14bb685b2088f2176d82b34cb4e30dbc, it was introduced in version v5.16.3 by commit 24e7590c60aa9487b8e43583dc9885f62f8216c1. For more details please see the references link.

Affected packages

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/
Events
Introduced
24e7590c60aa9487b8e43583dc9885f62f8216c1
Limit
b9ee734a14bb685b2088f2176d82b34cb4e30dbc

Affected versions

v5.*
v5.16.3
v5.16.4

Database specific

source
"https://github.com/cloudsecurityalliance/gsd-database/blob/main/2022/1000xxx/GSD-2022-1000611.json"