You are here

CVE-2014-1438

Vincent (CVE) Danen's picture
The restore_fpu_checking function in arch/x86/include/asm/fpu-internal.h in the Linux kernel before 3.12.8 on the AMD K7 and K8 platforms does not clear pending exceptions before proceeding to an EMMS instruction, which allows local users to cause a denial of service (task kill) or possibly gain privileges via a crafted application.

Details Source

Mitre

Statement

This issue does not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 5 and Red Hat Enterprise Linux 6.

Public Date

2013-12-30 00:00:00

Impact

Moderate

Bugzilla

CVE-2014-1438 kernel: x86: exceptions are not cleared in AMD FXSAVE workaround

Bugzilla ID

1 052 914

CVSS Status

verified

Base Score

4.70

Base Metrics

AV:L/AC:M/Au:N/C:N/I:N/A:C

Red Hat Security Errata

Platform Errata Release Date
MRG Grid for RHEL 6 Server v.2 (kernel-rt) RHSA-2014:0439 2014-04-28

Affected Packages State

Platform Package State
Red Hat Enterprise MRG 2 realtime-kernel Affected
Red Hat Enterprise Linux 7 kernel Not affected
Red Hat Enterprise Linux 6 kernel Not affected
Red Hat Enterprise Linux 5 kernel Not affected