summaryrefslogtreecommitdiffstats
path: root/retired/CVE-2021-3501
blob: 992f7127cc3c9573049ef7a547a5b32d2e39b129 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
Description: KVM: VMX: Don't use vcpu->run->internal.ndata as an array index
References:
Notes:
 carnil> Commit fixes 1aa561b1a4c0 ("kvm: x86: Add "last CPU" to some
 carnil> KVM_EXIT information") introduced in 5.9-rc1, so need check if
 carnil> the vulnerability itself still would be present in earlier
 carnil> versions.
 bwh> I have checked that internal.ndata was not used this way in earlier
 bwh> versions.
Bugs:
upstream: released (5.12-rc8) [04c4f2ee3f68c9a4bf1653d15f1a9a435ae33f7a]
5.10-upstream-stable: released (5.10.32) [7f64753835a78c7d2cc2932a5808ef3b7fd4c050]
4.19-upstream-stable: N/A "Vulnerability introduced later"
4.9-upstream-stable: N/A "Vulnerability introduced later"
sid: released (5.10.38-1)
4.19-buster-security: N/A "Vulnerability introduced later"
4.9-stretch-security: N/A "Vulnerability introduced later"

© 2014-2024 Faster IT GmbH | imprint | privacy policy