Bug 718882 - (CVE-2011-2519) CVE-2011-2519 kernel: xen: x86_emulate: fix SAHF emulation
CVE-2011-2519 kernel: xen: x86_emulate: fix SAHF emulation
Product: Security Response
Classification: Other
Component: vulnerability (Show other bugs)
All Linux
medium Severity medium
: ---
: ---
Assigned To: Red Hat Product Security
: Security
Depends On: 718883 718884 753008 798935
Blocks: 718879
  Show dependency treegraph
Reported: 2011-07-04 21:22 EDT by Eugene Teo (Security Response)
Modified: 2015-08-19 05:11 EDT (History)
12 users (show)

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Last Closed: 2012-05-10 04:08:45 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---

Attachments (Terms of Use)

  None (edit)
Description Eugene Teo (Security Response) 2011-07-04 21:22:26 EDT
Backport http://xenbits.xen.org/hg/xen-3.1-testing.hg/rev/15644

The patched code would cause a hypervisor crash due to dereferencing a bogus address (in the first 4 MBs of address space, as EFLAGS bits above bit 21 are always 0, but more likely in the first page).
Comment 4 Eugene Teo (Security Response) 2011-07-04 21:49:13 EDT

This issue only affects Red Hat Enterprise Linux 5. The versions of the Linux
kernel-xen as shipped with Red Hat Enterprise Linux 4, 6, and Red Hat Enterprise MRG are not affected. This has been addressed in Red Hat Enterprise Linux 5 via https://rhn.redhat.com/errata/RHSA-2011-1212.html.
Comment 9 errata-xmlrpc 2011-09-13 11:44:15 EDT
This issue has been addressed in following products:

  Red Hat Enterprise Linux 5

Via RHSA-2011:1212 https://rhn.redhat.com/errata/RHSA-2011-1212.html
Comment 11 errata-xmlrpc 2011-12-13 16:29:17 EST
This issue has been addressed in following products:

  Red Hat Enterprise Linux 5.6.Z - Server Only

Via RHSA-2011:1813 https://rhn.redhat.com/errata/RHSA-2011-1813.html
Comment 12 Petr Matousek 2012-03-01 05:30:37 EST
Created xen tracking bugs for this issue

Affects: fedora-all [bug 798935]

Note You need to log in before you can comment on or make changes to this bug.