AVG-850

Package linux
Status Fixed
Severity Critical
Type multiple issues
Affected 4.20.arch1-1
Fixed 4.20.8.arch1-1
Current 5.2.1.arch1-1 [testing]
5.2.arch2-1 [core]
Ticket None
Created Fri Jan 11 19:46:53 2019
Issue Severity Remote Type Description
CVE-2019-7222 Medium No Information disclosure
An information leakage issue was found in the way Linux kernel's KVM hypervisor handled page fault exceptions while emulating instructions like VMXON,...
CVE-2019-7221 Critical No Privilege escalation
A use-after-free vulnerability was found in the way the Linux kernel's KVM hypervisor emulates a preemption timer for L2 guests when nested (=1)...
CVE-2019-6974 High No Arbitrary code execution
A use-after-free vulnerability was found in the way the Linux kernel's KVM hypervisor implements its device control API. While creating a device via...