CVE-2010-0435

Severity
4.6MEDIUM
EPSS
0.1%
top 83.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 24
Latest updateMay 2

Description

The Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2, and KVM 83, when the Intel VT-x extension is enabled, allows guest OS users to cause a denial of service (NULL pointer dereference and host OS crash) via vectors related to instruction emulation.

CVSS vector

AV:L/AC:L/C:N/I:N/A:CExploitability: 3.1 | Impact: 6.9

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-xqcg-6633-64hg: The Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 22022-05-02
CVEList
CVE-2010-0435: The Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 22010-08-24

📋Vendor Advisories

5
Ubuntu
Linux kernel vulnerabilities2011-03-03
Ubuntu
Linux kernel vulnerabilities2011-02-25
Ubuntu
Linux kernel vulnerabilities2011-02-25
Ubuntu
Linux kernel vulnerabilities2011-02-01
Red Hat
kvm: vmx null pointer dereference2010-08-19

💬Community

1
Bugzilla
CVE-2010-0435 kvm: vmx null pointer dereference2010-03-04
CVE-2010-0435 (MEDIUM CVSS 4.6) | The Hypervisor (aka rhev-hypervisor | cvebase.io