You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve 2024 43819
About this tag
CVE-2024-43819 is a Linux kernel vulnerability affecting the s390 KVM implementation. It involves a null-pointer dereference that can be triggered when userland memory-region ioctls are used against ucontrol virtual machines. This flaw could lead to a denial-of-service condition on affected hosts. The patch addresses the issue by rejecting KVM_SET_USER_MEMORY_REGION and KVM_SET_USER_MEMORY_REGION2 for ucontrol guests, directing memory management to the s390-specific KVM_S390_UCAS_MAP and KVM_S390_UCAS_UNMAP interfaces. This targeted change prevents the crash path and closes the security hole. The fix is considered small and surgical, focusing on the specific defect without broader kernel changes.
A small, surgical kernel change has been credited with closing a potentially disruptive hole in the Linux KVM stack: CVE-2024-43819 addresses a defect in the s390 KVM implementation that could lead to a null-pointer dereference when userland memory-region ioctls are used against ucontrol VMs...