CVE-2019-3016
MEDIUMLinux Kernel >= 4.16 - Unauthorized Memory Read via PV TLB Race Condition
Title source: llmDescription
In a Linux KVM guest that has PV TLB enabled, a process in the guest kernel may be able to read memory locations from another process in the same guest. This problem is limit to the host running linux kernel 4.10 with a guest running linux kernel 4.16 or later. The problem mainly affects AMD processors but Intel CPUs cannot be ruled out.
References (13)
Core 13
Core References
Mailing List, Third Party Advisory mailing-list
x_refsource_mlist
http://www.openwall.com/lists/oss-security/2020/01/30/4
Mailing List x_refsource_confirm
https://lore.kernel.org/lkml/1580407316-11391-1-git-send-email-pbonzini%40redhat.com/
Issue Tracking, Third Party Advisory x_refsource_confirm
https://bugzilla.redhat.com/show_bug.cgi?id=1792167
Patch, Vendor Advisory x_refsource_confirm
https://git.kernel.org/linus/8c6de56a42e0c657955e12b882a81ef07d1d073e
Patch, Vendor Advisory x_refsource_confirm
https://git.kernel.org/linus/1eff70a9abd46f175defafd29bc17ad456f398a7
Patch, Vendor Advisory x_refsource_confirm
https://git.kernel.org/linus/917248144db5d7320655dbb41d3af0b8a0f3d589
Patch, Vendor Advisory x_refsource_confirm
https://git.kernel.org/linus/b043138246a41064527cf019a3d51d9f015e9796
Patch, Vendor Advisory x_refsource_confirm
https://git.kernel.org/linus/a6bd811f1209fe1c64c9f6fd578101d6436c6b6e
Vendor Advisory x_refsource_confirm
https://security.netapp.com/advisory/ntap-20200313-0003/
Vendor Advisory vendor-advisory
x_refsource_ubuntu
https://usn.ubuntu.com/4300-1/
Vendor Advisory vendor-advisory
x_refsource_ubuntu
https://usn.ubuntu.com/4301-1/
Exploit, Third Party Advisory x_refsource_misc
http://packetstormsecurity.com/files/157233/Kernel-Live-Patch-Security-Notice-LSN-0065-1.html
Third Party Advisory vendor-advisory
x_refsource_debian
https://www.debian.org/security/2020/dsa-4699
Scores
CVSS v3
6.2
EPSS
0.0061
EPSS Percentile
44.7%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-200
CWE-362
Status
published
Products (2)
linux/linux_kernel
4.10
linux/linux_kernel
4.16
Published
Jan 31, 2020
Tracked Since
Feb 18, 2026