Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's KVM component for Xen virtualization has been addressed. The issue arose in the emulation of the Xen 'schedop poll' hypercall, specifically when a virtual machine (VM) polled the host for more than one event channel. The 'schedop_poll' function allocated memory for multiple event channels, but the error handling did not properly manage the cleanup, leading to potential memory management issues.
The vulnerability could have caused improper memory handling, potentially leading to memory leaks or other memory-related issues.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.