In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Acquire SRCU in KVM_GET_MP_STATE to protect guest memory accesses Acquire a lock on kvm->srcu when userspace is getting…
High CVSS 7.8
Summary
In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Acquire SRCU in KVM_GET_MP_STATE to protect guest memory accesses Acquire a lock on kvm->srcu when userspace is getting MP state to handle a rather extreme edge case where "accepting" APIC events, i.e. processing pending INIT or SIPI, can trigger accesses to guest memory. If the vCPU is in L2 with INIT *and* a TRIPLE_FAULT request pending, then getting MP state will trigger a nested VM-Exit by way of ->check_nested…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/0357c8406dfa09430dd9858ebe813feb65524b6e Patch
- https://git.kernel.org/stable/c/56d997b257075951a46663970cd350cd5e34c041
- https://git.kernel.org/stable/c/592e040572f216d916f465047c8ce4a308fcca44 Patch
- https://git.kernel.org/stable/c/7bc5c360375d28ba5ef6298b0d53e735c81d66a1 Patch
- https://git.kernel.org/stable/c/8a3df0aa1087a89f5ce55f4aba816bfcb1ecf1be Patch
- https://git.kernel.org/stable/c/ef01cac401f18647d62720cf773d7bb0541827da Patch
- https://git.kernel.org/stable/c/f5cbe725b7477b4cd677be1b86b4e08f90572997 Patch
- https://lists.debian.org/debian-lts-announce/2025/05/msg00045.html Mailing List
Timeline
- nvd_ingest NVD