A flaw was found in KVM. When calling the KVMGETDEBUGREGS ioctl, on 32-bit systems, there might be some uninitialized portions of the kvm_debugregs structure that could be copied to userspace, causing an information leak.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-1513.json"
[
{
"target": {
"file": "arch/x86/kvm/x86.c"
},
"digest": {
"line_hashes": [
"250802085504415937741697396445899494278",
"197824333279395500018662869320878553741",
"235139031041870278498320739631309956485",
"219137035002760195663479265658690073815",
"250976765452180103878989733669357963893",
"249300712133050611276313975120937472061",
"41558555924555565469845226490836075476",
"128453528291737945263013383782933089874",
"121992741156330053332515258943500417631"
],
"threshold": 0.9
},
"signature_version": "v1",
"deprecated": false,
"id": "CVE-2023-1513-3ad248ec",
"source": "https://github.com/torvalds/linux/commit/2c10b61421a28e95a46ab489fd56c0f442ff6952",
"signature_type": "Line"
},
{
"target": {
"function": "kvm_vcpu_ioctl_x86_get_debugregs",
"file": "arch/x86/kvm/x86.c"
},
"digest": {
"function_hash": "159555496356222269341632007985778608139",
"length": 342.0
},
"signature_version": "v1",
"deprecated": false,
"id": "CVE-2023-1513-f791078b",
"source": "https://github.com/torvalds/linux/commit/2c10b61421a28e95a46ab489fd56c0f442ff6952",
"signature_type": "Function"
}
]