CVE-2014-0055: Red Hat Enterprise Linux
Medium severity, CVSS 5.5. EPSS: 0.6% chance of exploitation in the next 30 days.
The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsystem in the Linux kernel package before 2.6.32-431.11.2 on Red Hat Enterprise Linux (RHEL) 6 does not properly handle vhost_get_vq_desc errors, which allows guest OS users to cause a denial of service (host OS crash) via unspecified vectors.
Affected products
- Red Hat Enterprise Linux: version 6.0 only
Published 2014-03-26. Last modified 2026-06-17.