arch/powerpc/kvm/book3s_hv_rmhandlers.S in the Linux kernel through 4.7 on PowerPC platforms, when CONFIG_KVM_BOOK3S_64_HV is enabled, allows guest OS users to cause a denial of service (host OS infinite loop) by making a H_CEDE hypercall during the existence of a suspended transaction.
http://www.openwall.com/lists/oss-security/2016/07/28/2
https://bugzilla.redhat.com/show_bug.cgi?id=1349916
https://github.com/torvalds/linux/commit/93d17397e4e2182fdaad503e2f9da46202c0f1c3
https://github.com/torvalds/linux/commit/f024ee098476a3e620232e4a78cfac505f121245
Source: MITRE
Published: 2016-08-06
Updated: 2023-02-12
Type: CWE-399
Base Score: 4.6
Vector: AV:L/AC:L/Au:S/C:N/I:N/A:C
Impact Score: 6.9
Exploitability Score: 3.1
Severity: MEDIUM
Base Score: 6.5
Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
Impact Score: 4
Exploitability Score: 2
Severity: MEDIUM