A flaw was found in KVM. An improper check in svmsetx2apicmsrinterception() may allow direct access to host x2apic msrs when the guest resets its apic, potentially leading to a denial of service condition.
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_name": "linux-aws-6.2-cloud-tools-6.2.0-1016", "binary_version": "6.2.0-1016.16~22.04.1" }, { "binary_name": "linux-aws-6.2-headers-6.2.0-1016", "binary_version": "6.2.0-1016.16~22.04.1" }, { "binary_name": "linux-aws-6.2-tools-6.2.0-1016", "binary_version": "6.2.0-1016.16~22.04.1" }, { "binary_name": "linux-buildinfo-6.2.0-1016-aws", "binary_version": "6.2.0-1016.16~22.04.1" }, { "binary_name": "linux-cloud-tools-6.2.0-1016-aws", "binary_version": "6.2.0-1016.16~22.04.1" }, { "binary_name": "linux-headers-6.2.0-1016-aws", "binary_version": "6.2.0-1016.16~22.04.1" }, { "binary_name": "linux-image-unsigned-6.2.0-1016-aws", "binary_version": "6.2.0-1016.16~22.04.1" }, { "binary_name": "linux-image-unsigned-6.2.0-1016-aws-dbgsym", "binary_version": "6.2.0-1016.16~22.04.1" }, { "binary_name": "linux-modules-6.2.0-1016-aws", "binary_version": "6.2.0-1016.16~22.04.1" }, { "binary_name": "linux-modules-extra-6.2.0-1016-aws", "binary_version": "6.2.0-1016.16~22.04.1" }, { "binary_name": "linux-tools-6.2.0-1016-aws", "binary_version": "6.2.0-1016.16~22.04.1" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_name": "linux-azure-6.2-cloud-tools-6.2.0-1017", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-azure-6.2-headers-6.2.0-1017", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-azure-6.2-tools-6.2.0-1017", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-buildinfo-6.2.0-1017-azure", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-cloud-tools-6.2.0-1017-azure", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-headers-6.2.0-1017-azure", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-image-unsigned-6.2.0-1017-azure", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-image-unsigned-6.2.0-1017-azure-dbgsym", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-modules-6.2.0-1017-azure", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-modules-extra-6.2.0-1017-azure", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-tools-6.2.0-1017-azure", "binary_version": "6.2.0-1017.17~22.04.1" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_name": "linux-image-unsigned-6.2.0-1017-azure-fde", "binary_version": "6.2.0-1017.17~22.04.1.1" }, { "binary_name": "linux-image-unsigned-6.2.0-1017-azure-fde-dbgsym", "binary_version": "6.2.0-1017.17~22.04.1.1" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_name": "linux-buildinfo-6.2.0-1019-gcp", "binary_version": "6.2.0-1019.21~22.04.1" }, { "binary_name": "linux-gcp-6.2-headers-6.2.0-1019", "binary_version": "6.2.0-1019.21~22.04.1" }, { "binary_name": "linux-gcp-6.2-tools-6.2.0-1019", "binary_version": "6.2.0-1019.21~22.04.1" }, { "binary_name": "linux-headers-6.2.0-1019-gcp", "binary_version": "6.2.0-1019.21~22.04.1" }, { "binary_name": "linux-image-unsigned-6.2.0-1019-gcp", "binary_version": "6.2.0-1019.21~22.04.1" }, { "binary_name": "linux-image-unsigned-6.2.0-1019-gcp-dbgsym", "binary_version": "6.2.0-1019.21~22.04.1" }, { "binary_name": "linux-modules-6.2.0-1019-gcp", "binary_version": "6.2.0-1019.21~22.04.1" }, { "binary_name": "linux-modules-extra-6.2.0-1019-gcp", "binary_version": "6.2.0-1019.21~22.04.1" }, { "binary_name": "linux-tools-6.2.0-1019-gcp", "binary_version": "6.2.0-1019.21~22.04.1" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_name": "linux-buildinfo-6.2.0-37-generic", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-buildinfo-6.2.0-37-generic-64k", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-buildinfo-6.2.0-37-generic-lpae", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-cloud-tools-6.2.0-37-generic", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-headers-6.2.0-37-generic", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-headers-6.2.0-37-generic-64k", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-headers-6.2.0-37-generic-lpae", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-hwe-6.2-cloud-tools-6.2.0-37", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-hwe-6.2-cloud-tools-common", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-hwe-6.2-headers-6.2.0-37", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-hwe-6.2-tools-6.2.0-37", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-hwe-6.2-tools-common", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-hwe-6.2-tools-host", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-image-6.2.0-37-generic", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-image-6.2.0-37-generic-dbgsym", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-image-6.2.0-37-generic-lpae", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-image-6.2.0-37-generic-lpae-dbgsym", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-image-unsigned-6.2.0-37-generic", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-image-unsigned-6.2.0-37-generic-64k", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-image-unsigned-6.2.0-37-generic-64k-dbgsym", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-image-unsigned-6.2.0-37-generic-dbgsym", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-modules-6.2.0-37-generic", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-modules-6.2.0-37-generic-64k", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-modules-6.2.0-37-generic-lpae", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-modules-extra-6.2.0-37-generic", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-modules-ipu6-6.2.0-37-generic", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-modules-ivsc-6.2.0-37-generic", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-modules-iwlwifi-6.2.0-37-generic", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-source-6.2.0", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-tools-6.2.0-37-generic", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-tools-6.2.0-37-generic-64k", "binary_version": "6.2.0-37.38~22.04.1" }, { "binary_name": "linux-tools-6.2.0-37-generic-lpae", "binary_version": "6.2.0-37.38~22.04.1" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_name": "linux-buildinfo-6.2.0-1017-lowlatency", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-buildinfo-6.2.0-1017-lowlatency-64k", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-cloud-tools-6.2.0-1017-lowlatency", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-headers-6.2.0-1017-lowlatency", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-headers-6.2.0-1017-lowlatency-64k", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-image-unsigned-6.2.0-1017-lowlatency", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-image-unsigned-6.2.0-1017-lowlatency-64k", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-image-unsigned-6.2.0-1017-lowlatency-64k-dbgsym", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-image-unsigned-6.2.0-1017-lowlatency-dbgsym", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-lowlatency-hwe-6.2-cloud-tools-6.2.0-1017", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-lowlatency-hwe-6.2-cloud-tools-common", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-lowlatency-hwe-6.2-headers-6.2.0-1017", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-lowlatency-hwe-6.2-tools-6.2.0-1017", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-lowlatency-hwe-6.2-tools-common", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-lowlatency-hwe-6.2-tools-host", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-modules-6.2.0-1017-lowlatency", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-modules-6.2.0-1017-lowlatency-64k", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-modules-ipu6-6.2.0-1017-lowlatency", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-modules-ivsc-6.2.0-1017-lowlatency", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-modules-iwlwifi-6.2.0-1017-lowlatency", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-tools-6.2.0-1017-lowlatency", "binary_version": "6.2.0-1017.17~22.04.1" }, { "binary_name": "linux-tools-6.2.0-1017-lowlatency-64k", "binary_version": "6.2.0-1017.17~22.04.1" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_name": "linux-buildinfo-6.2.0-1012-nvidia", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-buildinfo-6.2.0-1012-nvidia-64k", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-headers-6.2.0-1012-nvidia", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-headers-6.2.0-1012-nvidia-64k", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-image-unsigned-6.2.0-1012-nvidia", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-image-unsigned-6.2.0-1012-nvidia-64k", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-image-unsigned-6.2.0-1012-nvidia-64k-dbgsym", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-image-unsigned-6.2.0-1012-nvidia-dbgsym", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-modules-6.2.0-1012-nvidia", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-modules-6.2.0-1012-nvidia-64k", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-modules-extra-6.2.0-1012-nvidia", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-modules-nvidia-fs-6.2.0-1012-nvidia", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-modules-nvidia-fs-6.2.0-1012-nvidia-64k", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-nvidia-6.2-headers-6.2.0-1012", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-nvidia-6.2-tools-6.2.0-1012", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-nvidia-6.2-tools-host", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-tools-6.2.0-1012-nvidia", "binary_version": "6.2.0-1012.12" }, { "binary_name": "linux-tools-6.2.0-1012-nvidia-64k", "binary_version": "6.2.0-1012.12" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_name": "linux-buildinfo-6.5.0-1007-nvidia", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-buildinfo-6.5.0-1007-nvidia-64k", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-headers-6.5.0-1007-nvidia", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-headers-6.5.0-1007-nvidia-64k", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-image-unsigned-6.5.0-1007-nvidia", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-image-unsigned-6.5.0-1007-nvidia-64k", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-image-unsigned-6.5.0-1007-nvidia-64k-dbgsym", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-image-unsigned-6.5.0-1007-nvidia-dbgsym", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-modules-6.5.0-1007-nvidia", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-modules-6.5.0-1007-nvidia-64k", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-modules-extra-6.5.0-1007-nvidia", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-modules-ipu6-6.5.0-1007-nvidia", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-modules-ivsc-6.5.0-1007-nvidia", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-modules-iwlwifi-6.5.0-1007-nvidia", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-nvidia-6.5-headers-6.5.0-1007", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-nvidia-6.5-tools-6.5.0-1007", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-nvidia-6.5-tools-host", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-tools-6.5.0-1007-nvidia", "binary_version": "6.5.0-1007.7" }, { "binary_name": "linux-tools-6.5.0-1007-nvidia-64k", "binary_version": "6.5.0-1007.7" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_name": "linux-buildinfo-6.1.0-1026-oem", "binary_version": "6.1.0-1026.26" }, { "binary_name": "linux-headers-6.1.0-1026-oem", "binary_version": "6.1.0-1026.26" }, { "binary_name": "linux-image-unsigned-6.1.0-1026-oem", "binary_version": "6.1.0-1026.26" }, { "binary_name": "linux-image-unsigned-6.1.0-1026-oem-dbgsym", "binary_version": "6.1.0-1026.26" }, { "binary_name": "linux-modules-6.1.0-1026-oem", "binary_version": "6.1.0-1026.26" }, { "binary_name": "linux-modules-ipu6-6.1.0-1026-oem", "binary_version": "6.1.0-1026.26" }, { "binary_name": "linux-modules-ivsc-6.1.0-1026-oem", "binary_version": "6.1.0-1026.26" }, { "binary_name": "linux-modules-iwlwifi-6.1.0-1026-oem", "binary_version": "6.1.0-1026.26" }, { "binary_name": "linux-oem-6.1-headers-6.1.0-1026", "binary_version": "6.1.0-1026.26" }, { "binary_name": "linux-oem-6.1-tools-6.1.0-1026", "binary_version": "6.1.0-1026.26" }, { "binary_name": "linux-oem-6.1-tools-host", "binary_version": "6.1.0-1026.26" }, { "binary_name": "linux-tools-6.1.0-1026-oem", "binary_version": "6.1.0-1026.26" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_name": "linux-buildinfo-6.5.0-1008-oem", "binary_version": "6.5.0-1008.8" }, { "binary_name": "linux-headers-6.5.0-1008-oem", "binary_version": "6.5.0-1008.8" }, { "binary_name": "linux-image-unsigned-6.5.0-1008-oem", "binary_version": "6.5.0-1008.8" }, { "binary_name": "linux-image-unsigned-6.5.0-1008-oem-dbgsym", "binary_version": "6.5.0-1008.8" }, { "binary_name": "linux-modules-6.5.0-1008-oem", "binary_version": "6.5.0-1008.8" }, { "binary_name": "linux-modules-ipu6-6.5.0-1008-oem", "binary_version": "6.5.0-1008.8" }, { "binary_name": "linux-modules-ivsc-6.5.0-1008-oem", "binary_version": "6.5.0-1008.8" }, { "binary_name": "linux-modules-iwlwifi-6.5.0-1008-oem", "binary_version": "6.5.0-1008.8" }, { "binary_name": "linux-oem-6.5-headers-6.5.0-1008", "binary_version": "6.5.0-1008.8" }, { "binary_name": "linux-oem-6.5-lib-rust-6.5.0-1008-oem", "binary_version": "6.5.0-1008.8" }, { "binary_name": "linux-oem-6.5-tools-6.5.0-1008", "binary_version": "6.5.0-1008.8" }, { "binary_name": "linux-oem-6.5-tools-host", "binary_version": "6.5.0-1008.8" }, { "binary_name": "linux-tools-6.5.0-1008-oem", "binary_version": "6.5.0-1008.8" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_name": "linux-buildinfo-6.2.0-1009-starfive", "binary_version": "6.2.0-1009.10~22.04.1" }, { "binary_name": "linux-headers-6.2.0-1009-starfive", "binary_version": "6.2.0-1009.10~22.04.1" }, { "binary_name": "linux-image-6.2.0-1009-starfive", "binary_version": "6.2.0-1009.10~22.04.1" }, { "binary_name": "linux-image-6.2.0-1009-starfive-dbgsym", "binary_version": "6.2.0-1009.10~22.04.1" }, { "binary_name": "linux-modules-6.2.0-1009-starfive", "binary_version": "6.2.0-1009.10~22.04.1" }, { "binary_name": "linux-modules-extra-6.2.0-1009-starfive", "binary_version": "6.2.0-1009.10~22.04.1" }, { "binary_name": "linux-starfive-6.2-headers-6.2.0-1009", "binary_version": "6.2.0-1009.10~22.04.1" }, { "binary_name": "linux-starfive-6.2-tools-6.2.0-1009", "binary_version": "6.2.0-1009.10~22.04.1" }, { "binary_name": "linux-tools-6.2.0-1009-starfive", "binary_version": "6.2.0-1009.10~22.04.1" } ] }