Candidate: CVE-2010-0435 Description: kvm null ptr dereference References: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0435 Notes: jmm> RHEL patch commited as patches/CVE-2010-0435-kvm-kernel-fix-null-pointer-dereference.patch jmm> The kernel.org version is quite different, though. Maybe it's only exploitable in jmm> combination with the plethora of KVM patches added by Red Hat? Bugs: upstream: released (2.6.34) 2.6.32-upstream-stable: released (2.6.32.27) linux-2.6: released (2.6.32-29) [bugfix/all/stable/2.6.32.27.patch] 2.6.26-lenny-security: released (2.6.26-26lenny2) [bugfix/x86/kvm-vmx-fix-vmx-null-pointer-dereference-on-debug-register-access.patch] 2.6.32-squeeze-security: released (2.6.32-29) [bugfix/all/stable/2.6.32.27.patch]