High severity7.8NVD Advisory· Published Jun 27, 2016· Updated May 6, 2026
CVE-2016-4440
CVE-2016-4440
Description
arch/x86/kvm/vmx.c in the Linux kernel through 4.6.3 mishandles the APICv on/off state, which allows guest OS users to obtain direct APIC MSR access on the host OS, and consequently cause a denial of service (host OS crash) or possibly execute arbitrary code on the host OS, via x2APIC mode.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/nvdVendor Advisory
- github.com/torvalds/linux/commit/3ce424e45411cf5a13105e0386b6ecf6eeb4f66fnvdVendor Advisory
- www.openwall.com/lists/oss-security/2016/05/20/2nvdMailing List
- bugzilla.redhat.com/show_bug.cginvdIssue Tracking
News mentions
0No linked articles in our index yet.