CVE-2013-1935: Red Hat Enterprise Linux

Medium severity, CVSS 5.7. EPSS: 0.5% chance of exploitation in the next 30 days.

A certain Red Hat patch to the KVM subsystem in the kernel package before 2.6.32-358.11.1.el6 on Red Hat Enterprise Linux (RHEL) 6 does not properly implement the PV EOI feature, which allows guest OS users to cause a denial of service (host OS crash) by leveraging a time window during which interrupts are disabled but copy_to_user function calls are possible.

Affected products

  • Red Hat Enterprise Linux: version 6.0 only

Published 2013-07-16. Last modified 2026-06-16.