CVE-2021-47255
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
21/05/2024
Last modified:
30/04/2025
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
kvm: LAPIC: Restore guard to prevent illegal APIC register access<br />
<br />
Per the SDM, "any access that touches bytes 4 through 15 of an APIC<br />
register may cause undefined behavior and must not be executed."<br />
Worse, such an access in kvm_lapic_reg_read can result in a leak of<br />
kernel stack contents. Prior to commit 01402cf81051 ("kvm: LAPIC:<br />
write down valid APIC registers"), such an access was explicitly<br />
disallowed. Restore the guard that was removed in that commit.
Impact
Base Score 3.x
7.10
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.3 (including) | 5.4.128 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.5 (including) | 5.10.46 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.11 (including) | 5.12.13 (excluding) |
| cpe:2.3:o:linux:linux_kernel:5.13:rc1:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:5.13:rc2:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:5.13:rc3:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:5.13:rc4:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:5.13:rc5:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:5.13:rc6:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://git.kernel.org/stable/c/018685461a5b9a9a70e664ac77aef0d7415a3fd5
- https://git.kernel.org/stable/c/218bf772bddd221489c38dde6ef8e917131161f6
- https://git.kernel.org/stable/c/a2aff09807fbe4018c269d3773a629949058b210
- https://git.kernel.org/stable/c/bf99ea52970caeb4583bdba1192c1f9b53b12c84
- https://git.kernel.org/stable/c/018685461a5b9a9a70e664ac77aef0d7415a3fd5
- https://git.kernel.org/stable/c/218bf772bddd221489c38dde6ef8e917131161f6
- https://git.kernel.org/stable/c/a2aff09807fbe4018c269d3773a629949058b210
- https://git.kernel.org/stable/c/bf99ea52970caeb4583bdba1192c1f9b53b12c84



