bugzilla.redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2270836 CVE-2024-25743
HIGH
Record summary
CVE-2024-25743 has a selected CVSS score of 7.1 (high).
Description
In the Linux kernel through 6.9, an untrusted hypervisor can inject virtual interrupts 0 and 14 at any point in time and can trigger the SIGFPE signal handler in userspace applications. This affects AMD SEV-SNP and AMD SEV-ES.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Jul 23, 2024 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
kernelBrowse linux / kernelDefault status: unknown | CVE List | Through 6.9 | affected |
References
6bugzilla.suse.com
https://bugzilla.suse.com/show_bug.cgi?id=1223307 git.kernel.org
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit?id=f35e46631b28a63ca3887d7afef1a65a5544da52 github.com
https://github.com/torvalds/linux/commit/f35e46631b28a63ca3887d7afef1a65a5544da52 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2024-25743 amd.com
https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3008.html