CVE-2021-28696
Summary
| CVE | CVE-2021-28696 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-08-27 19:15:00 UTC |
| Updated | 2023-11-07 03:32:00 UTC |
| Description | IOMMU page mapping issues on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Both AMD and Intel allow ACPI tables to specify regions of memory which should be left untranslated, which typically means these addresses should pass the translation phase unaltered. While these are typically device specific ACPI properties, they can also be specified to apply to a range of devices, or even all devices. On all systems with such regions Xen failed to prevent guests from undoing/replacing such mappings (CVE-2021-28694). On AMD systems, where a discontinuous range is specified by firmware, the supposedly-excluded middle range will also be identity-mapped (CVE-2021-28695). Further, on AMD systems, upon de-assigment of a physical device from a guest, the identity mappings would be left in place, allowing a guest continued access to ranges of memory which it shouldn't have access to anymore (CVE-2021-28696). |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| oss-security - Re: Xen Security Advisory 378 v3
(CVE-2021-28694,CVE-2021-28695,CVE-2021-28696) - IOMMU page mapping issues on
x86 |
MLIST |
www.openwall.com |
Mailing List, Third Party Advisory |
| [SECURITY] Fedora 33 Update: xen-4.14.2-3.fc33 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| xenbits.xenproject.org/xsa/advisory-378.txt |
MISC |
xenbits.xenproject.org |
|
| [SECURITY] Fedora 33 Update: xen-4.14.2-3.fc33 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| FEDORA-2021-081f9bf5d2 |
FEDORA |
lists.fedoraproject.org |
|
| Xen: Multiple Vulnerabilities (GLSA 202208-23) — Gentoo security |
GENTOO |
security.gentoo.org |
|
| oss-security - Re: Xen Security Advisory 378 v3 (CVE-2021-28694,CVE-2021-28695,CVE-2021-28696)
- IOMMU page mapping issues on x86 |
MLIST |
www.openwall.com |
|
| Debian -- Security Information -- DSA-4977-1 xen |
DEBIAN |
www.debian.org |
|
| [SECURITY] Fedora 34 Update: xen-4.14.2-3.fc34 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [SECURITY] Fedora 34 Update: xen-4.14.2-3.fc34 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| oss-security - Xen Security Advisory 378 v3 (CVE-2021-28694,CVE-2021-28695,CVE-2021-28696)
- IOMMU page mapping issues on x86 |
MLIST |
www.openwall.com |
|
| [SECURITY] Fedora 35 Update: xen-4.15.0-6.fc35 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
Vendor Comments And Credit
Discovery Credit
LEGACY: Array
Legacy QID Mappings
- 178798 Debian Security Update for xen (DSA 4977-1)
- 183138 Debian Security Update for xen (CVE-2021-28696)
- 281879 Fedora Security Update for xen (FEDORA-2021-4f129cc0c1)
- 281880 Fedora Security Update for xen (FEDORA-2021-d68ed12e46)
- 390249 Oracle Managed Virtualization (VM) Server for x86 Security Update for xen (OVMSA-2021-0033)
- 500801 Alpine Linux Security Update for xen
- 501519 Alpine Linux Security Update for xen
- 501797 Alpine Linux Security Update for xen
- 504544 Alpine Linux Security Update for xen
- 710600 Gentoo Linux Xen Multiple Vulnerabilities (GLSA 202208-23)
- 751074 SUSE Enterprise Linux Security Update for xen (SUSE-SU-2021:2925-1)
- 751083 SUSE Enterprise Linux Security Update for xen (SUSE-SU-2021:2924-1)
- 751085 SUSE Enterprise Linux Security Update for xen (SUSE-SU-2021:2943-1)
- 751087 SUSE Enterprise Linux Security Update for xen (SUSE-SU-2021:2955-1)
- 751100 OpenSUSE Security Update for xen (openSUSE-SU-2021:2923-1)
- 751103 SUSE Enterprise Linux Security Update for xen (SUSE-SU-2021:2957-1)
- 751111 OpenSUSE Security Update for xen (openSUSE-SU-2021:1236-1)