← Back

CVE-2021-3653

nvd nist
Published: Sep 29, 2021Modified: Nov 21, 2024

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Exploitability: 2.0 / Impact: 6.0
Source: NVD

Description

A flaw was found in the KVM's AMD code for supporting SVM nested virtualization. The flaw occurs when processing the VMCB (virtual machine control block) provided by the L1 guest to spawn/handle a nested guest (L2). Due to improper validation of the "int_ctl" field, this issue could allow a malicious L1 to enable AVIC support (Advanced Virtual Interrupt Controller) for the L2 guest. As a result, the L2 guest would be allowed to read/write physical pages of the host, resulting in a crash of the entire system, leak of sensitive data or potential guest-to-host escape. This flaw affects Linux kernel versions prior to 5.14-rc7.

Affected (15)

1 product
Linux Kernel
1 product
Enterprise Linux
1 product
Debian Linux
Configuration A
13 vulnerable
Vulnerable SoftwareAffected Versions
Linux
From 2.6.30 to 4.4.282
From 4.10 to 4.14.245
From 4.15 to 4.19.205
From 4.20 to 5.4.142
From 4.5 to 4.9.281
From 5.11 to 5.13.12
From 5.5 to 5.10.60
Version 5.14 rc1
Version 5.14 rc2
Version 5.14 rc3
Version 5.14 rc4
Version 5.14 rc5
Version 5.14 rc6
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 7.0
Configuration C
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 9.0

References (10)

Source: secalert@redhat.com
ExploitThird Party AdvisoryVDB Entry
Source: secalert@redhat.com
Issue TrackingPatchThird Party Advisory
Source: secalert@redhat.com
Mailing ListThird Party Advisory
Source: secalert@redhat.com
Mailing ListThird Party Advisory
Source: secalert@redhat.com
Mailing ListPatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingPatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListPatchThird Party Advisory

Timeline

No history available yet.