Comment 12 for bug 458521

Revision history for this message
Dustin Kirkland  (kirkland) wrote :

This bug is actually security-critical. I'm copying the Ubuntu-Security team, and updating the changelog for security update publication.

Basically, a guest running virtio networking and a linux kernel <= 2.6.25 (eg hardy) can be remotely DoS'd by any other user on the network flooding an open network port (eg 22) with traffic. The DoS causes crash in the kvm process. Because the guest's operating system was not shut down cleanly, unwritten buffers or dirty filesystem operations could yield data loss in the guest.

Attaching a debdiff for the security team to upload to the security-prosed pocket.

:-Dustin