Maxim Levitsky discovered that the KVM nested virtualization (SVM)
implementation for AMD processors in the Linux kernel did not properly
handle x2AVIC MSRs. An attacker in a guest VM could use this to cause a
denial of service (host kernel crash). (CVE-2023-5090)
Alon Zahavi discovered that the NVMe-oF/TCP subsystem in the Linux kernel
did not properly handle queue initialization failures in certain
situations, leading to a use-after-free vulnerability. A remote attacker
could use this to cause a denial of service (system crash) or possibly
execute arbitrary code. (CVE-2023-5178)
Budimir Markovic discovered that the perf subsystem in the Linux kernel did
not properly handle events grouping, leading to an out-of-bounds write. A
local attacker could use this to cause a denial of service (system crash)
or possibly execute arbitrary code. (CVE-2023-5717)
More Stories
python-jinja2-3.1.5-1.fc40
FEDORA-2025-6ed1e0c3c6 Packages in this update: python-jinja2-3.1.5-1.fc40 Update description: Update to 3.1.5 Security fix for CVE-2024-56201 Read More
python-jinja2-3.1.5-1.fc41
FEDORA-2025-7b6e208ef2 Packages in this update: python-jinja2-3.1.5-1.fc41 Update description: Update to 3.1.5 Security fix for CVE-2024-56201 Read More
chromium-131.0.6778.264-1.el9
FEDORA-EPEL-2025-56fc9b1754 Packages in this update: chromium-131.0.6778.264-1.el9 Update description: Update to 131.0.6778.264 * High CVE-2025-0291: Type Confusion in V8 Read More
chromium-131.0.6778.264-1.fc41
FEDORA-2025-212c5c45ce Packages in this update: chromium-131.0.6778.264-1.fc41 Update description: Update to 131.0.6778.264 * High CVE-2025-0291: Type Confusion in V8 Read More
chromium-131.0.6778.264-1.el10_0
FEDORA-EPEL-2025-10c786286b Packages in this update: chromium-131.0.6778.264-1.el10_0 Update description: Update to 131.0.6778.264 * High CVE-2025-0291: Type Confusion in V8 Read More
chromium-131.0.6778.264-1.el8
FEDORA-EPEL-2025-b65cef2f93 Packages in this update: chromium-131.0.6778.264-1.el8 Update description: Update to 131.0.6778.264 * High CVE-2025-0291: Type Confusion in V8 Read More