SB2022062735 - Multiple vulnerabilities in Citrix Hypervisor
Published: June 27, 2022
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 5 secuirty vulnerabilities.
1) Information disclosure (CVE-ID: CVE-2022-21123)
The vulnerability allows an attacker to gain access to potentially sensitive information.
The vulnerability exists in Intel processors due to excessive data output when DirectPath I/O (PCI-Passthrough) is utilized. An attacker (both local and remote) with administrative access to a virtual machine that has an attached DirectPath I/O (PCI-Passthrough) device can obtain information stored in physical memory about the hypervisor or other virtual machines that reside on the same host.
2) Information disclosure (CVE-ID: CVE-2022-21125)
The vulnerability allows an attacker to gain access to potentially sensitive information.
The vulnerability exists in Intel processors due to excessive data output when DirectPath I/O (PCI-Passthrough) is utilized. An attacker (both local and remote) with administrative access to a virtual machine that has an attached DirectPath I/O (PCI-Passthrough) device can obtain information stored in physical memory about the hypervisor or other virtual machines that reside on the same host.
3) Incomplete cleanup (CVE-ID: CVE-2022-21127)
The vulnerability allows a local user to gain access to sensitive information on the system.
The vulnerability exists due to incomplete cleanup in specific special register read operations. A local user can enable information disclosure.
4) Information disclosure (CVE-ID: CVE-2022-21166)
The vulnerability allows an attacker to gain access to potentially sensitive information.
The vulnerability exists in Intel processors due to excessive data output when DirectPath I/O (PCI-Passthrough) is utilized. An attacker (both local and remote) with administrative access to a virtual machine that has an attached DirectPath I/O (PCI-Passthrough) device can obtain information stored in physical memory about the hypervisor or other virtual machines that reside on the same host.
5) Race condition (CVE-ID: CVE-2022-26362)
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to race condition in typeref acquisition Xen. A remote attacker can execute arbitrary code on the target system.
Remediation
Install update from vendor's website.
References
- https://support.citrix.com/article/CTX460064/citrix-hypervisor-security-update"
- https://support.citrix.com/article/CTX460064/citrix-hypervisor-security-update</a></p><p><a
- https://support.citrix.com/article/CTX459954/hotfix-xs82ecu1012-for-citrix-hypervisor-82-cumulative-update-1"
- https://support.citrix.com/article/CTX459954/hotfix-xs82ecu1012-for-citrix-hypervisor-82-cumulative-update-1</a></p><p>
- https://support.citrix.com/article/CTX459953/hotfix-xs71ecu2075-for-xenserver-71-cumulative-update-2</p><p><br></p>