An issue was discovered in the Linux kernel 5.5 through 5.7.9, as used in Xen through 4.13.x for x86 PV guests. An attacker may be granted the I/O port permissions of an unrelated task. This occurs because tssinvalidateio_bitmap mishandling causes a loss of synchronization between the I/O bitmaps of TSS and Xen, aka CID-cadfad870154.
{ "availability": "No subscription required", "binaries": [ { "binary_name": "linux-buildinfo-5.6.0-1023-oem", "binary_version": "5.6.0-1023.23" }, { "binary_name": "linux-headers-5.6.0-1023-oem", "binary_version": "5.6.0-1023.23" }, { "binary_name": "linux-image-unsigned-5.6.0-1023-oem", "binary_version": "5.6.0-1023.23" }, { "binary_name": "linux-image-unsigned-5.6.0-1023-oem-dbgsym", "binary_version": "5.6.0-1023.23" }, { "binary_name": "linux-modules-5.6.0-1023-oem", "binary_version": "5.6.0-1023.23" }, { "binary_name": "linux-oem-5.6-headers-5.6.0-1023", "binary_version": "5.6.0-1023.23" }, { "binary_name": "linux-oem-5.6-tools-5.6.0-1023", "binary_version": "5.6.0-1023.23" }, { "binary_name": "linux-oem-5.6-tools-host", "binary_version": "5.6.0-1023.23" }, { "binary_name": "linux-tools-5.6.0-1023-oem", "binary_version": "5.6.0-1023.23" } ] }