A flaw was found in the KVM's AMD nested virtualization (SVM). A malicious L1 guest could purposely fail to intercept the shutdown of a cooperative nested guest (L2), possibly leading to a page fault and kernel panic in the host (L0).
References
Link | Resource |
---|---|
https://lore.kernel.org/lkml/20221020093055.224317-5-mlevitsk@redhat.com/T/ | Mailing List Patch Vendor Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=2130278 | Issue Tracking Patch Third Party Advisory |
Configurations
Information
Published : 2022-10-25 10:15
Updated : 2022-10-28 12:23
NVD link : CVE-2022-3344
Mitre link : CVE-2022-3344
JSON object : View
CWE
CWE-440
Expected Behavior Violation
Products Affected
linux
- linux_kernel