The handle_invept function in arch/x86/kvm/vmx.c in the Linux kernel 3.12 through 3.15 allows privileged KVM guest OS users to cause a denial of service (NULL pointer dereference and host OS crash) via a single-context INVEPT instruction with a NULL EPT pointer.
                
            References
                    | Link | Resource | 
|---|---|
| https://bugzilla.kernel.org/show_bug.cgi?id=195167 | Issue Tracking | 
| https://launchpad.net/bugs/1678676 | Issue Tracking | 
| https://bugzilla.kernel.org/show_bug.cgi?id=195167 | Issue Tracking | 
| https://launchpad.net/bugs/1678676 | Issue Tracking | 
Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    21 Nov 2024, 03:33
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://bugzilla.kernel.org/show_bug.cgi?id=195167 - Issue Tracking | |
| References | () https://launchpad.net/bugs/1678676 - Issue Tracking | 
Information
                Published : 2017-04-24 23:59
Updated : 2025-04-20 01:37
NVD link : CVE-2017-8106
Mitre link : CVE-2017-8106
CVE.ORG link : CVE-2017-8106
JSON object : View
Products Affected
                linux
- linux_kernel
CWE
                
                    
                        
                        CWE-476
                        
            NULL Pointer Dereference
