Vulnerability Name: | CVE-2022-39189 (CCN-234702) | ||||||||||||||||||||
Assigned: | 2022-05-30 | ||||||||||||||||||||
Published: | 2022-05-30 | ||||||||||||||||||||
Updated: | 2023-02-14 | ||||||||||||||||||||
Summary: | Linux Kernel could allow a local authenticated attacker to execute arbitrary code on the system, caused by the failure to clear KVM_VCPU_PREEMPTED by KVM instruction emulation. By executing a specially-crafted program, an attacker could exploit this vulnerability to execute arbitrary code on the system. | ||||||||||||||||||||
CVSS v3 Severity: | 7.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H) 7.0 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C)
7.0 High (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C)
| ||||||||||||||||||||
CVSS v2 Severity: | 6.8 Medium (CCN CVSS v2 Vector: AV:L/AC:L/Au:S/C:C/I:C/A:C)
| ||||||||||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2022-39189 Source: cve@mitre.org Type: Issue Tracking, Patch, Third Party Advisory cve@mitre.org Source: CCN Type: Google Security Research Issue 2309 Linux: KVM instruction emulation doesn't clear KVM_VCPU_PREEMPTED, breaking guest's TLB flushing Source: cve@mitre.org Type: Patch, Release Notes, Vendor Advisory cve@mitre.org Source: XF Type: UNKNOWN linux-kernel-cve202239189-code-exec(234702) Source: cve@mitre.org Type: Patch, Vendor Advisory cve@mitre.org Source: CCN Type: Linux Kernel GIT Repository KVM: x86: do not report a vCPU as preempted outside instruction boundaries Source: cve@mitre.org Type: Patch, Third Party Advisory cve@mitre.org Source: CCN Type: Packet Storm Security [08-30-2022] Linux KVM Instruction Emulation Issue Source: cve@mitre.org Type: UNKNOWN cve@mitre.org Source: CCN Type: Mend Vulnerability Database CVE-2022-39189 | ||||||||||||||||||||
Vulnerable Configuration: | Configuration CCN 1:![]() | ||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||
| |||||||||||||||||||||
BACK |