Карточка уязвимости
Характеристики уязвимости
Уровень опасности
Оценка CVSS
(AV:A/AC:M/Au:S/C:C/I:C/A:C)
Производитель ПО
Наименование ПО
Linux Kernel
(Unknown)
Описание
Уязвимость в Xen при использовании транзитного соединения PCI (PCI passthrough) в чипсетах Intel VT-d, которые не имеют прерывания перераспределения памяти, позволяет пользователям гостевой ОС получить привилегии основной ОС, используя DMA для генерирования MSI-прерываний при помощи внесения записей в журнал прерываний.
Как исправить
Используйте рекомендации производителя.
Ссылки
CONFIRM (http://xen.org/download/index_4.0.2.html): http://xen.org/download/index_4.0.2.html
MLIST ([xen-dev] 20110512 Xen security advisory CVE-2011-1898 - VT-d (PCI passthrough) MSI): http://xen.1045712.n5.nabble.com/Xen-security-advisory-CVE-2011-1898-VT-d-PCI-passthrough-MSI-td4390298.html
MISC (http://www.invisiblethingslab.com/resources/2011/Software%20Attacks%20on%20Intel%20VT-d.pdf): http://www.invisiblethingslab.com/resources/2011/Software%20Attacks%20on%20Intel%20VT-d.pdf
MISC (http://theinvisiblethings.blogspot.com/2011/05/following-white-rabbit-software-attacks.html): http://theinvisiblethings.blogspot.com/2011/05/following-white-rabbit-software-attacks.html
SUSE (SUSE-SU-2011:0942): http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00018.html
SUSE (openSUSE-SU-2011:0941): http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00017.html
FEDORA (FEDORA-2011-8403): http://lists.fedoraproject.org/pipermail/package-announce/2011-June/062139.html
FEDORA (FEDORA-2011-8421): http://lists.fedoraproject.org/pipermail/package-announce/2011-June/062112.html
MLIST ([xen-dev] 20110512 Xen security advisory CVE-2011-1898 - VT-d (PCI passthrough) MSI): http://xen.1045712.n5.nabble.com/Xen-security-advisory-CVE-2011-1898-VT-d-PCI-passthrough-MSI-td4390298.html
MISC (http://www.invisiblethingslab.com/resources/2011/Software%20Attacks%20on%20Intel%20VT-d.pdf): http://www.invisiblethingslab.com/resources/2011/Software%20Attacks%20on%20Intel%20VT-d.pdf
MISC (http://theinvisiblethings.blogspot.com/2011/05/following-white-rabbit-software-attacks.html): http://theinvisiblethings.blogspot.com/2011/05/following-white-rabbit-software-attacks.html
SUSE (SUSE-SU-2011:0942): http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00018.html
SUSE (openSUSE-SU-2011:0941): http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00017.html
FEDORA (FEDORA-2011-8403): http://lists.fedoraproject.org/pipermail/package-announce/2011-June/062139.html
FEDORA (FEDORA-2011-8421): http://lists.fedoraproject.org/pipermail/package-announce/2011-June/062112.html