[PATCH 0/3][SRU][B/C] Multiple KVM vulnerabilities

Tyler Hicks tyhicks at canonical.com
Mon Feb 25 11:48:04 UTC 2019


* https://people.canonical.com/~ubuntu-security/cve/?cve=CVE-2019-6974
* https://people.canonical.com/~ubuntu-security/cve/?cve=CVE-2019-7221
* https://people.canonical.com/~ubuntu-security/cve/?cve=CVE-2019-7222

Successfully ran the ubuntu_kvm_smoke_test and did manual verification in a
nested KVM environment.

Tyler

Jann Horn (1):
  kvm: fix kvm_ioctl_create_device() reference counting (CVE-2019-6974)

Paolo Bonzini (1):
  KVM: x86: work around leak of uninitialized stack contents
    (CVE-2019-7222)

Peter Shier (1):
  KVM: nVMX: unconditionally cancel preemption timer in free_nested
    (CVE-2019-7221)

 arch/x86/kvm/vmx.c  | 1 +
 arch/x86/kvm/x86.c  | 7 +++++++
 virt/kvm/kvm_main.c | 3 ++-
 3 files changed, 10 insertions(+), 1 deletion(-)

-- 
2.7.4




More information about the kernel-team mailing list