CVE-2021-47035

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
28/02/2024
Last modified:
24/01/2025

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> iommu/vt-d: Remove WO permissions on second-level paging entries<br /> <br /> When the first level page table is used for IOVA translation, it only<br /> supports Read-Only and Read-Write permissions. The Write-Only permission<br /> is not supported as the PRESENT bit (implying Read permission) should<br /> always set. When using second level, we still give separate permissions<br /> that allows WriteOnly which seems inconsistent and awkward. We want to<br /> have consistent behavior. After moving to 1st level, we don&amp;#39;t want things<br /> to work sometimes, and break if we use 2nd level for the same mappings.<br /> Hence remove this configuration.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.6 (including) 5.10.37 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.11 (including) 5.11.21 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.12 (including) 5.12.4 (excluding)