Fedora Account System
Red Hat Associate
Red Hat Customer
The Linux kernel does not properly initialize memory in messages passed between virtual guests and the host operating system in the vhost/vhost.c:vhost_new_msg() function. This can allow local privileged users to read some kernel memory contents when reading from the /dev/vhost-net device file. References: https://lkml.org/lkml/2018/4/27/833 https://marc.info/?t=152484394400005&r=1&w=2 (and the next pages)
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 1576187]
This was fixed for Fedora with the 4.17 rebases.
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2018:3083 https://access.redhat.com/errata/RHSA-2018:3083
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2018:3096 https://access.redhat.com/errata/RHSA-2018:3096
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2018:2948 https://access.redhat.com/errata/RHSA-2018:2948