CVE-2023-5090
Summary
| CVE | CVE-2023-5090 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-11-06 11:15:00 UTC |
| Updated | 2023-11-14 17:01:00 UTC |
| Description | A flaw was found in KVM. An improper check in svm_set_x2apic_msr_interception() may allow direct access to host x2apic msrs when the guest resets its apic, potentially leading to a denial of service condition. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| cve-details |
MISC |
access.redhat.com |
|
| 2248122 – (CVE-2023-5090) CVE-2023-5090 kernel: KVM: SVM: improper check in svm_set_x2apic_msr_interception allows direct access to host x2apic msrs |
MISC |
bugzilla.redhat.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160978 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel (ELSA-2023-12874)
- 160982 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel-container (ELSA-2023-12911)
- 160985 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel-container (ELSA-2023-12910)
- 161237 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel (ELSA-2023-13043)
- 199929 Ubuntu Security Notification for Linux kernel (OEM) Vulnerabilities (USN-6497-1)
- 199933 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6502-1)
- 199938 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6503-1)
- 199952 Ubuntu Security Notification for Linux kernel (Oracle) Vulnerabilities (USN-6502-2)
- 199957 Ubuntu Security Notification for Linux kernel (StarFive) Vulnerabilities (USN-6520-1)
- 199958 Ubuntu Security Notification for Linux kernel (NVIDIA) Vulnerabilities (USN-6502-3)
- 199973 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6502-4)
- 199982 Ubuntu Security Notification for Linux kernel (GCP) Vulnerability (USN-6537-1)
- 356908 Amazon Linux Security Advisory for kernel : ALAS2023-2023-430
- 356919 Amazon Linux Security Advisory for kernel-livepatch : ALAS2023LIVEPATCH-2023-026
- 356921 Amazon Linux Security Advisory for kernel-livepatch : ALAS2023LIVEPATCH-2023-022
- 356922 Amazon Linux Security Advisory for kernel-livepatch : ALAS2023LIVEPATCH-2023-023
- 356923 Amazon Linux Security Advisory for kernel-livepatch : ALAS2023LIVEPATCH-2023-024
- 356924 Amazon Linux Security Advisory for kernel-livepatch : ALAS2023LIVEPATCH-2023-025
- 356925 Amazon Linux Security Advisory for kernel-livepatch : ALAS2023LIVEPATCH-2023-021
- 6140012 AWS Bottlerocket Security Update for kernel (GHSA-h793-mm5x-7p69)
- 6140051 AWS Bottlerocket Security Update for kernel (GHSA-h793-mm5x-7p69)