Details
-
Bug
-
Resolution: Fixed
-
Minor
-
None
-
None
-
3
-
9223372036854775807
Description
Security Fix(es):
- A buffer overflow flaw was found in the way Linux kernel's vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descriptors with invalid length to the host when migration is underway, could use this flaw to increase their privileges on the host. (CVE-2019-14835)
https://access.redhat.com/errata/RHSA-2019:2827?sc_cid=701600000006NHXAA2
Attachments
Issue Links
- is related to
-
LU-12762 kernel update [RHEL8.0 4.18.0-80.11.1.el8_0]
-
- Resolved
-
Oleg Drokin (green@whamcloud.com) merged in patch https://review.whamcloud.com/36527/
Subject:
LU-12791kernel: kernel update RHEL 8.0 [4.18.0-80.11.2.el8_0]Project: fs/lustre-release
Branch: master
Current Patch Set:
Commit: efe0ce6cca8f426b6b55b1a520492c99c3bff0dd