VYPR
Unrated severityNVD Advisory· Published Mar 22, 2013· Updated Apr 29, 2026

CVE-2013-1796

CVE-2013-1796

Description

The kvm_set_msr_common function in arch/x86/kvm/x86.c in the Linux kernel through 3.8.4 does not ensure a required time_page alignment during an MSR_KVM_SYSTEM_TIME operation, which allows guest OS users to cause a denial of service (buffer overflow and host OS memory corruption) or possibly have unspecified other impact via a crafted application.

Affected products

5
  • Linux/Kernel5 versions
    cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: <=3.8.4
    • cpe:2.3:o:linux:linux_kernel:3.8.0:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:3.8.1:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:3.8.2:*:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:3.8.3:*:*:*:*:*:*:*

Patches

1

Vulnerability mechanics

Generated on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.

References

19

News mentions

0

No linked articles in our index yet.