KVM: s390: pv: fix index value of replaced ASCE
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 8.8epss 0.2%
exploitation probability
0.2%top 88% of all CVEs
observed exploitation
nono source reports it
In the Linux kernel, the following vulnerability has been resolved:
KVM: s390: pv: fix index value of replaced ASCE
The index field of the struct page corresponding to a guest ASCE should
be 0. When replacing the ASCE in s390_replace_asce(), the index of the
new ASCE should also be set to 0.
Having the wrong index might lead to the wrong addresses being passed
around when notifying pte invalidations, and eventually to validity
intercepts (VM crash) if the prefix gets unmapped and the notifier gets
called with the wrong address.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Affected products
Linux · LinuxReferences
https://git.kernel.org/stable/c/017f686bcb536ff23d49c143fdf9d1fd89a9a924https://git.kernel.org/stable/c/49a2686adddebe1ae76b4d368383208656ef6606https://git.kernel.org/stable/c/8e635da0e0d3cb45e32fa79b36218fb98281bc10https://git.kernel.org/stable/c/c2fceb59bbda16468bda82b002383bff59de89abhttps://git.kernel.org/stable/c/f1c7a776338f2ac5e34da40e58fe9f33ea390a5e