Database/Kernel, userspace & hypervisor

Xen on AMD-Vi - unity map handling: Second XSA-400 AMD-Vi unity-map issue. Stale or incorrect IOMMU mappings across
CVSS 7.8CVE-2022-26359Kernel, userspace & hypervisorcurated
Impact
Second XSA-400 AMD-Vi unity-map issue. Stale or incorrect IOMMU mappings across device assignment leave DMA windows open into memory the current device owner should not reach.
Who can reach it
Guest with an assigned device, particularly across reassignment.
What to do
Fixed in Xen (XSA-400). Hypervisor update plus reboot.
References
Related entries
- Xen on AMD-Vi - unity map handling: Third XSA-400 AMD-Vi issue. Same class - IOMMU mappings that outlive theirCVE-2022-26360 · Xen on AMD-Vi - unity map handlingHigh
- Xen on AMD-Vi - unity map handling: Fourth XSA-400 AMD-Vi issue. Patch the set togetherCVE-2022-26361 · Xen on AMD-Vi - unity map handlingHigh
- Linux kernel (IPsec ESP): Buffer overflow in the IPsec ESP transformation code - local rootCVE-2022-27666 · Linux kernel (IPsec ESP)High
- Linux kernel (netfilter): Use-after-free write in the netfilter subsystem - privilege escalation to rootCVE-2022-32250 · Linux kernel (netfilter)High
- Linux kernel (nf_tables): Heap overflow in nft_set_elem_init() - local root, weaponised inside containersCVE-2022-34918 · Linux kernel (nf_tables)High
- Linux i915 GPU kernel driver (TLB invalidation): An incorrect TLB flush in i915 leaves the GPU able to reach memory itCVE-2022-4139 · Linux i915 GPU kernel driver (TLB invalidation)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.