vulnerability
Red Hat OpenShift: CVE-2019-3016: kernel: kvm: Information leak within a KVM guest
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
2 | (AV:L/AC:M/Au:N/C:P/I:N/A:N) | Jan 31, 2020 | Dec 29, 2020 | Apr 11, 2025 |
Severity
2
CVSS
(AV:L/AC:M/Au:N/C:P/I:N/A:N)
Published
Jan 31, 2020
Added
Dec 29, 2020
Modified
Apr 11, 2025
Description
In a Linux KVM guest that has PV TLB enabled, a process in the guest kernel may be able to read memory locations from another process in the same guest. This problem is limit to the host running linux kernel 4.10 with a guest running linux kernel 4.16 or later. The problem mainly affects AMD processors but Intel CPUs cannot be ruled out.
Solution
linuxrpm-upgrade-redhat-coreos

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.