32 lines
1.0 KiB
JSON
Raw Normal View History

2023-04-24 12:24:31 +02:00
{
"id": "CVE-2021-45464",
"sourceIdentifier": "cve@mitre.org",
"published": "2023-04-15T23:15:13.760",
"lastModified": "2023-04-17T13:12:43.170",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
{
"lang": "en",
"value": "kvmtool through 39181fc allows an out-of-bounds write, related to virtio/balloon.c and virtio/pci.c. This allows a guest OS user to execute arbitrary code on the host machine."
}
],
"metrics": {},
"references": [
{
"url": "https://cdn.discordapp.com/attachments/921419715170164776/921882173517230100/exploit.c",
"source": "cve@mitre.org"
},
{
"url": "https://git.kernel.org/pub/scm/linux/kernel/git/will/kvmtool.git/commit/?id=39181fc6429f4e9e71473284940e35857b42772a",
"source": "cve@mitre.org"
},
{
"url": "https://git.kernel.org/pub/scm/linux/kernel/git/will/kvmtool.git/log/",
"source": "cve@mitre.org"
},
{
"url": "https://www.kalmarunionen.dk/writeups/2021/hxp-2021/lkvm/",
"source": "cve@mitre.org"
}
]
}