Guests can trigger NIC interface reset/abort/crash via netback It is possible for a guest to trigger a NIC interface reset/abort/crash in a Linux based network backend by sending certain kinds of packets. It appears to be an (unwritten?) assumption in the rest of the Linux network stack that packet protocol headers are all contained within the linear section of the SKB and some NICs behave badly if this is not the case. This has been reported to occur with Cisco (enic) and Broadcom NetXtrem II BCM5780 (bnx2x) though it may be an issue with other NICs/drivers as well. In case the frontend is sending requests with split headers, netback will forward those violating above mentioned assumption to the networking core, resulting in said misbehavior.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3244-1 | linux-5.10 security update |
Debian DLA |
DLA-3245-1 | linux security update |
EUVD |
EUVD-2022-43003 | Guests can trigger NIC interface reset/abort/crash via netback It is possible for a guest to trigger a NIC interface reset/abort/crash in a Linux based network backend by sending certain kinds of packets. It appears to be an (unwritten?) assumption in the rest of the Linux network stack that packet protocol headers are all contained within the linear section of the SKB and some NICs behave badly if this is not the case. This has been reported to occur with Cisco (enic) and Broadcom NetXtrem II BCM5780 (bnx2x) though it may be an issue with other NICs/drivers as well. In case the frontend is sending requests with split headers, netback will forward those violating above mentioned assumption to the networking core, resulting in said misbehavior. |
Ubuntu USN |
USN-5794-1 | Linux kernel (AWS) vulnerabilities |
Ubuntu USN |
USN-5802-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5803-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5804-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5804-2 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5808-1 | Linux kernel (IBM) vulnerabilities |
Ubuntu USN |
USN-5813-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5814-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5829-1 | Linux kernel (Raspberry Pi) vulnerabilities |
Ubuntu USN |
USN-5830-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5831-1 | Linux kernel (Azure CVM) vulnerabilities |
Ubuntu USN |
USN-5832-1 | Linux kernel (Raspberry Pi) vulnerabilities |
Ubuntu USN |
USN-5860-1 | Linux kernel (GKE) vulnerabilities |
Ubuntu USN |
USN-5861-1 | Linux kernel (Dell300x) vulnerabilities |
Ubuntu USN |
USN-5863-1 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-5875-1 | Linux kernel (GKE) vulnerabilities |
Ubuntu USN |
USN-5877-1 | Linux kernel (GKE) vulnerabilities |
Ubuntu USN |
USN-5879-1 | Linux kernel (HWE) vulnerabilities |
Ubuntu USN |
USN-5918-1 | Linux kernel (BlueField) vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: XEN
Published:
Updated: 2024-08-03T01:14:03.290Z
Reserved: 2022-10-21T00:00:00
Link: CVE-2022-3643
No data.
Status : Modified
Published: 2022-12-07T01:15:11.207
Modified: 2024-11-21T07:19:56.600
Link: CVE-2022-3643
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN