CVE-2013-5634
published 2013-09-25CVE-2013-5634: arch/arm/kvm/arm.c in the Linux kernel before 3.10 on the ARM platform, when KVM is used, allows host OS users to cause a denial of service (NULL pointer…
PriorityP416medium4.3CVSS 2.0
AVAACHAuSCNINAC
EPSS
0.76%
52.0th percentile
arch/arm/kvm/arm.c in the Linux kernel before 3.10 on the ARM platform, when KVM is used, allows host OS users to cause a denial of service (NULL pointer dereference, OOPS, and host OS crash) or possibly have unspecified other impact by omitting vCPU initialization before a KVM_GET_REG_LIST ioctl call.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 3.11.5-1 (bookworm) | linux 3.11.5-1 (bookworm) |
| linux | linux_kernel | <= 3.9.11 | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 3.11.5-1 | 3.11.5-1 |
| linux | linux_kernel | >= 0 < 3.11.5-1 | 3.11.5-1 |
| linux | linux_kernel | >= 0 < 3.11.5-1 | 3.11.5-1 |
| linux | linux_kernel | >= 0 < 3.11.5-1 | 3.11.5-1 |
CVSS provenance
nvdv2.04.3MEDIUMAV:A/AC:H/Au:S/C:N/I:N/A:C
osv4.3MEDIUM
vendor_debian4.3MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2013-5634: linux - arch/arm/kvm/arm.c in the Linux kernel before 3.10 on the ARM platform, when KVM...
vendor_debian·2013·CVSS 4.3
CVE-2013-5634 [MEDIUM] CVE-2013-5634: linux - arch/arm/kvm/arm.c in the Linux kernel before 3.10 on the ARM platform, when KVM...
arch/arm/kvm/arm.c in the Linux kernel before 3.10 on the ARM platform, when KVM is used, allows host OS users to cause a denial of service (NULL pointer dereference, OOPS, and host OS crash) or possibly have unspecified other impact by omitting vCPU initialization before a KVM_GET_REG_LIST ioctl call.
Scope: local
bookworm: resolved (fixed in 3.11.5-1)
bullseye: resolved (fixed in 3.11.5-1)
forky: resolved (fixed in 3.11.5-1)
sid: resolved (fixed in 3.11.5-1)
trixie: resolved (fixed in 3.11.5-1)
Red Hat
CVE-2013-5634: arch/arm/kvm/arm
vendor_redhat·CVSS 4.3
CVE-2013-5634 [MEDIUM] CVE-2013-5634: arch/arm/kvm/arm
arch/arm/kvm/arm.c in the Linux kernel before 3.10 on the ARM platform, when KVM is used, allows host OS users to cause a denial of service (NULL pointer dereference, OOPS, and host OS crash) or possibly have unspecified other impact by omitting vCPU initialization before a KVM_GET_REG_LIST ioctl call.
Statement: Not vulnerable. This issue does not affect the versions of the kernel package as shipped with Red Hat Enterprise Linux 5, 6 and Red Hat Enterprise MRG 2.
GHSA
GHSA-8xwg-6qcr-3qm6: arch/arm/kvm/arm
ghsa_unreviewed·2022-05-17
CVE-2013-5634 [MEDIUM] GHSA-8xwg-6qcr-3qm6: arch/arm/kvm/arm
arch/arm/kvm/arm.c in the Linux kernel before 3.10 on the ARM platform, when KVM is used, allows host OS users to cause a denial of service (NULL pointer dereference, OOPS, and host OS crash) or possibly have unspecified other impact by omitting vCPU initialization before a KVM_GET_REG_LIST ioctl call.
OSV
CVE-2013-5634: arch/arm/kvm/arm
osv·2013-09-25·CVSS 4.3
CVE-2013-5634 [MEDIUM] CVE-2013-5634: arch/arm/kvm/arm
arch/arm/kvm/arm.c in the Linux kernel before 3.10 on the ARM platform, when KVM is used, allows host OS users to cause a denial of service (NULL pointer dereference, OOPS, and host OS crash) or possibly have unspecified other impact by omitting vCPU initialization before a KVM_GET_REG_LIST ioctl call.
No detection rules found.
No public exploits indexed.
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=e8180dcaa8470ceca21109f143876fdcd9fe050ahttp://www.openwall.com/lists/oss-security/2013/08/26/4http://www.securityfocus.com/bid/61995https://github.com/torvalds/linux/commit/e8180dcaa8470ceca21109f143876fdcd9fe050ahttps://www.kernel.org/pub/linux/kernel/v3.x/patch-3.10.bz2http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=e8180dcaa8470ceca21109f143876fdcd9fe050ahttp://www.openwall.com/lists/oss-security/2013/08/26/4http://www.securityfocus.com/bid/61995https://github.com/torvalds/linux/commit/e8180dcaa8470ceca21109f143876fdcd9fe050ahttps://www.kernel.org/pub/linux/kernel/v3.x/patch-3.10.bz2
2013-09-25
Published