vulnerability

Red Hat OpenShift: CVE-2019-3016: kernel: kvm: Information leak within a KVM guest

Severity
2
CVSS
(AV:L/AC:M/Au:N/C:P/I:N/A:N)
Published
Jan 31, 2020
Added
Dec 29, 2020
Modified
Apr 11, 2025

Description

In a Linux KVM guest that has PV TLB enabled, a process in the guest kernel may be able to read memory locations from another process in the same guest. This problem is limit to the host running linux kernel 4.10 with a guest running linux kernel 4.16 or later. The problem mainly affects AMD processors but Intel CPUs cannot be ruled out.

Solution

linuxrpm-upgrade-redhat-coreos
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.