File kvm-preXX-cpuid-entry-count.patch of Package kvm-kmp
This patch addresses bnc#550072 - CVE-2009-3638 --- a/x86/x86.c +++ b/x86/x86.c @@ -1419,6 +1419,8 @@ static int kvm_dev_ioctl_get_supported_c if (cpuid->nent < 1) goto out; + if (cpuid->nent > KVM_MAX_CPUID_ENTRIES) + cpuid->nent = KVM_MAX_CPUID_ENTRIES; r = -ENOMEM; cpuid_entries = vmalloc(sizeof(struct kvm_cpuid_entry2) * cpuid->nent); if (!cpuid_entries)