Buffer overflow in Xen - CVE-2020-27674
Published: October 22, 2020 / Updated: January 24, 2021
Vulnerability details
The vulnerability allows a local authenticated user to read and manipulate data.
An issue was discovered in Xen through 4.14.x allowing x86 PV guest OS users to gain guest OS privileges by modifying kernel memory contents, because invalidation of TLB entries is mishandled during use of an INVLPG-like attack technique.
Affected software
Gentoo Linux
Debian Linux
Fedora
xen (Alpine package)
xen (Debian package)
xen
app-emulation/xen
app-emulation/xen-tools
IBM Systems Director
How to mitigate CVE-2020-27674
xen - addressed in versions 4.12.3-7.fc31, 4.12.3-8.fc31, 4.13.1-8.fc32, 4.13.2-1.fc32, 4.14.0-7.fc33, 4.14.0-9.fc33
app-emulation/xen - update to 4.13.2
app-emulation/xen-tools - update to 4.13.2
External References
- http://www.openwall.com/lists/oss-security/2021/01/19/5
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PZAM3LYJ5TZLSSNL3KXFILM46QKVTOUA/
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/U3U4LNKKXU4UP4Z5XP6TMIWSML3QODPE/
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XIK57QJOVOPWH6RFRNMGOBCROBCKMDG2/
- https://security.gentoo.org/glsa/202011-06
- https://www.debian.org/security/2020/dsa-4804
- https://xenbits.xen.org/xsa/advisory-286.html