Lucene search

K
ubuntucveUbuntu.comUB:CVE-2021-28706
HistoryNov 24, 2021 - 12:00 a.m.

CVE-2021-28706

2021-11-2400:00:00
ubuntu.com
ubuntu.com
15
memory limit
calculation overflow
hypercalls
administrator established limit
hypervisor
universe-binary
xen

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

CVSS3

8.6

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H

EPSS

0.003

Percentile

70.0%

guests may exceed their designated memory limit When a guest is permitted
to have close to 16TiB of memory, it may be able to issue hypercalls to
increase its memory allocation beyond the administrator established limit.
This is a result of a calculation done with 32-bit precision, which may
overflow. It would then only be the overflowed (and hence small) number
which gets compared against the established upper bound.

Notes

Author Note
mdeslaur hypervisor packages are in universe. For issues in the hypervisor, add appropriate tags to each section, ex: Tags_xen: universe-binary

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

CVSS3

8.6

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H

EPSS

0.003

Percentile

70.0%