An issue was discovered in Linux: KVM through Improper handling of VM_IO|VM_PFNMAP vmas in KVM can bypass RO checks and can lead to pages being freed while still accessible by the VMM and guest. This allows users with the ability to start and control a VM to read/write random pages of memory and can result in local privilege escalation.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2785-1 | linux-4.19 security update |
Debian DLA |
DLA-2843-1 | linux security update |
EUVD |
EUVD-2021-9684 | An issue was discovered in Linux: KVM through Improper handling of VM_IO|VM_PFNMAP vmas in KVM can bypass RO checks and can lead to pages being freed while still accessible by the VMM and guest. This allows users with the ability to start and control a VM to read/write random pages of memory and can result in local privilege escalation. |
Ubuntu USN |
USN-5070-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5071-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5071-2 | Linux kernel (HWE) vulnerabilities |
Ubuntu USN |
USN-5071-3 | Linux kernel (Raspberry Pi) vulnerabilities |
Ubuntu USN |
USN-5094-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5094-2 | Linux kernel (Raspberry Pi) vulnerabilities |
Ubuntu USN |
USN-5106-1 | Linux kernel (OEM) vulnerabilities |
Ubuntu USN |
USN-5120-1 | Linux kernel (Azure) vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: Google
Published:
Updated: 2024-09-16T23:26:05.122Z
Reserved: 2021-01-05T00:00:00
Link: CVE-2021-22543
No data.
Status : Modified
Published: 2021-05-26T11:15:08.623
Modified: 2024-11-21T05:50:18.270
Link: CVE-2021-22543
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN