Resource exhaustion in Linux kernel - CVE-2019-3882
Published: May 2, 2019 / Updated: May 30, 2020
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to perform denial of service (DoS) attack.
The vulnerability exists within Linux kernel's vfio interface implementation, related to incorrect permission management. A local user with administrative privileges of the device, connected to vfio-pci interface can exhaust all system resources and perform denial of service attack.