CVE-2021-47112

In the Linux kernel, the following vulnerability has been resolved: x86/kvm: Teardown PV features on boot CPU as well Various PV features (Async PF, PV EOI, steal time) work through memory shared with hypervisor and when we restore from hibernation we must properly teardown all these features to make sure hypervisor doesn't write to stale locations after we jump to the previously hibernated kernel (which can try to place anything there). For secondary CPUs the job is already done by kvm_cpu_down_prepare(), register syscore ops to do the same for boot CPU.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.13:rc1:*:*:*:*:*:*

History

13 Mar 2025, 19:36

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/38b858da1c58ad46519a257764e059e663b59ff2 - () https://git.kernel.org/stable/c/38b858da1c58ad46519a257764e059e663b59ff2 - Patch
References () https://git.kernel.org/stable/c/7620a669111b52f224d006dea9e1e688e2d62c54 - () https://git.kernel.org/stable/c/7620a669111b52f224d006dea9e1e688e2d62c54 - Patch
References () https://git.kernel.org/stable/c/8b79feffeca28c5459458fe78676b081e87c93a4 - () https://git.kernel.org/stable/c/8b79feffeca28c5459458fe78676b081e87c93a4 - Patch
References () https://git.kernel.org/stable/c/d1629b5b925de9b27979e929dae7fcb766daf6b6 - () https://git.kernel.org/stable/c/d1629b5b925de9b27979e929dae7fcb766daf6b6 - Patch
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:linux:linux_kernel:5.13:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
First Time Linux linux Kernel
Linux

21 Nov 2024, 06:35

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/38b858da1c58ad46519a257764e059e663b59ff2 - () https://git.kernel.org/stable/c/38b858da1c58ad46519a257764e059e663b59ff2 -
References () https://git.kernel.org/stable/c/7620a669111b52f224d006dea9e1e688e2d62c54 - () https://git.kernel.org/stable/c/7620a669111b52f224d006dea9e1e688e2d62c54 -
References () https://git.kernel.org/stable/c/8b79feffeca28c5459458fe78676b081e87c93a4 - () https://git.kernel.org/stable/c/8b79feffeca28c5459458fe78676b081e87c93a4 -
References () https://git.kernel.org/stable/c/d1629b5b925de9b27979e929dae7fcb766daf6b6 - () https://git.kernel.org/stable/c/d1629b5b925de9b27979e929dae7fcb766daf6b6 -
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: x86/kvm: Desmontaje de funciones PV también en la CPU de arranque Varias funciones PV (Async PF, PV EOI, tiempo de robo) funcionan a través de la memoria compartida con el hipervisor y cuando restauramos desde la hibernación Debemos eliminar adecuadamente todas estas características para asegurarnos de que el hipervisor no escriba en ubicaciones obsoletas después de saltar al kernel previamente hibernado (que puede intentar colocar cualquier cosa allí). Para las CPU secundarias, el trabajo ya lo realiza kvm_cpu_down_prepare(), registre syscore ops para hacer lo mismo para la CPU de arranque.

15 Mar 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-15 21:15

Updated : 2025-03-13 19:36


NVD link : CVE-2021-47112

Mitre link : CVE-2021-47112

CVE.ORG link : CVE-2021-47112


JSON object : View

Products Affected

linux

  • linux_kernel