CVE-2017-15306 PUBLISHED

The kvm_vm_ioctl_check_extension function in arch/powerpc/kvm/powerpc.c in the Linux kernel before 4.13.11 allows local users to cause a denial of service (NULL pointer dereference and system crash) via a KVM_CHECK_EXTENSION KVM_CAP_PPC_HTM ioctl call to /dev/kvm.

EPSS 0.04% · 13.6th percentile

Risk Scores

EPSS Score
0.04%
13.6th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux-oem4.13.0-1008.9, 0
Ubuntu:20.04:LTSlinux-raspi25.3.0-1014.16, 0, 5.3.0-1017.19
Ubuntu:24.04:LTSlinux-raspi-realtime0, 6.8.0-2019.20
Ubuntu:16.04:LTSlinux-hwe4.10.0-37.41~16.04.1, 4.10.0-35.39~16.04.1, 0
Ubuntu:16.04:LTSlinux-gcp4.10.0-1006.6, 0, 4.10.0-1004.4
Ubuntu:22.04:LTSlinux-realtime0, 5.15.0-1032.35
Ubuntu:18.04:LTSlinux-hwe-edge5.3.0-23.25~18.04.2, 5.3.0-23.25~18.04.1, 0
Ubuntu:22.04:LTSlinux-riscv5.15.0-1011.12, 5.15.0-1022.26, 5.15.0-1007.7
Ubuntu:22.04:LTSlinux-intel-iot-realtime5.15.0-1073.75, 0
Ubuntu:20.04:LTSlinux-azure-fde5.4.0-1078.81+cvm1.1, 5.4.0-1080.83+cvm1.1, 5.4.0-1083.87+cvm1.1
Ubuntu:20.04:LTSlinux-riscv5.4.0-27.31, 5.4.0-40.45, 5.4.0-39.44
Ubuntu:16.04:LTSlinux-azure0, 4.11.0-1009.9, 4.11.0-1011.11
Ubuntu:18.04:LTSlinux-hwe5.3.0-59.53~18.04.1, 5.3.0-62.56~18.04.1, 5.3.0-64.58~18.04.1
Ubuntu:20.04:LTSlinux-gke5.4.0-1104.111, 5.4.0-1105.112, 5.4.0-1041.43

Timeline

References

Open in Interactive Console →