CVE-2021-47035
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
28/02/2024
Last modified:
24/01/2025
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
iommu/vt-d: Remove WO permissions on second-level paging entries<br />
<br />
When the first level page table is used for IOVA translation, it only<br />
supports Read-Only and Read-Write permissions. The Write-Only permission<br />
is not supported as the PRESENT bit (implying Read permission) should<br />
always set. When using second level, we still give separate permissions<br />
that allows WriteOnly which seems inconsistent and awkward. We want to<br />
have consistent behavior. After moving to 1st level, we don&#39;t want things<br />
to work sometimes, and break if we use 2nd level for the same mappings.<br />
Hence remove this configuration.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.6 (including) | 5.10.37 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.11 (including) | 5.11.21 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.12 (including) | 5.12.4 (excluding) |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://git.kernel.org/stable/c/25faff78138933244c678c7fc78f7c0340fa04a0
- https://git.kernel.org/stable/c/66c24699f266ff310381a9552d3576eea8ad6e20
- https://git.kernel.org/stable/c/89bd620798704a8805fc9db0d71d7f812cf5b3d2
- https://git.kernel.org/stable/c/eea53c5816889ee8b64544fa2e9311a81184ff9c
- https://git.kernel.org/stable/c/25faff78138933244c678c7fc78f7c0340fa04a0
- https://git.kernel.org/stable/c/66c24699f266ff310381a9552d3576eea8ad6e20
- https://git.kernel.org/stable/c/89bd620798704a8805fc9db0d71d7f812cf5b3d2
- https://git.kernel.org/stable/c/c848416cc05afc1589edba04fe00b85c2f797ee3
- https://git.kernel.org/stable/c/eea53c5816889ee8b64544fa2e9311a81184ff9c



