A flaw was found in KVM. An improper check in svmsetx2apicmsrinterception() may allow direct access to host x2apic msrs when the guest resets its apic, potentially leading to a denial of service condition.
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_version": "6.2.0-1016.16~22.04.1", "binary_name": "linux-aws-6.2-cloud-tools-6.2.0-1016" }, { "binary_version": "6.2.0-1016.16~22.04.1", "binary_name": "linux-aws-6.2-headers-6.2.0-1016" }, { "binary_version": "6.2.0-1016.16~22.04.1", "binary_name": "linux-aws-6.2-tools-6.2.0-1016" }, { "binary_version": "6.2.0-1016.16~22.04.1", "binary_name": "linux-buildinfo-6.2.0-1016-aws" }, { "binary_version": "6.2.0-1016.16~22.04.1", "binary_name": "linux-cloud-tools-6.2.0-1016-aws" }, { "binary_version": "6.2.0-1016.16~22.04.1", "binary_name": "linux-headers-6.2.0-1016-aws" }, { "binary_version": "6.2.0-1016.16~22.04.1", "binary_name": "linux-image-unsigned-6.2.0-1016-aws" }, { "binary_version": "6.2.0-1016.16~22.04.1", "binary_name": "linux-image-unsigned-6.2.0-1016-aws-dbgsym" }, { "binary_version": "6.2.0-1016.16~22.04.1", "binary_name": "linux-modules-6.2.0-1016-aws" }, { "binary_version": "6.2.0-1016.16~22.04.1", "binary_name": "linux-modules-extra-6.2.0-1016-aws" }, { "binary_version": "6.2.0-1016.16~22.04.1", "binary_name": "linux-tools-6.2.0-1016-aws" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-azure-6.2-cloud-tools-6.2.0-1017" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-azure-6.2-headers-6.2.0-1017" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-azure-6.2-tools-6.2.0-1017" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-buildinfo-6.2.0-1017-azure" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-cloud-tools-6.2.0-1017-azure" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-headers-6.2.0-1017-azure" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-image-unsigned-6.2.0-1017-azure" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-image-unsigned-6.2.0-1017-azure-dbgsym" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-modules-6.2.0-1017-azure" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-modules-extra-6.2.0-1017-azure" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-tools-6.2.0-1017-azure" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_version": "6.2.0-1017.17~22.04.1.1", "binary_name": "linux-image-unsigned-6.2.0-1017-azure-fde" }, { "binary_version": "6.2.0-1017.17~22.04.1.1", "binary_name": "linux-image-unsigned-6.2.0-1017-azure-fde-dbgsym" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_version": "6.2.0-1019.21~22.04.1", "binary_name": "linux-buildinfo-6.2.0-1019-gcp" }, { "binary_version": "6.2.0-1019.21~22.04.1", "binary_name": "linux-gcp-6.2-headers-6.2.0-1019" }, { "binary_version": "6.2.0-1019.21~22.04.1", "binary_name": "linux-gcp-6.2-tools-6.2.0-1019" }, { "binary_version": "6.2.0-1019.21~22.04.1", "binary_name": "linux-headers-6.2.0-1019-gcp" }, { "binary_version": "6.2.0-1019.21~22.04.1", "binary_name": "linux-image-unsigned-6.2.0-1019-gcp" }, { "binary_version": "6.2.0-1019.21~22.04.1", "binary_name": "linux-image-unsigned-6.2.0-1019-gcp-dbgsym" }, { "binary_version": "6.2.0-1019.21~22.04.1", "binary_name": "linux-modules-6.2.0-1019-gcp" }, { "binary_version": "6.2.0-1019.21~22.04.1", "binary_name": "linux-modules-extra-6.2.0-1019-gcp" }, { "binary_version": "6.2.0-1019.21~22.04.1", "binary_name": "linux-tools-6.2.0-1019-gcp" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-buildinfo-6.2.0-37-generic" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-buildinfo-6.2.0-37-generic-64k" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-buildinfo-6.2.0-37-generic-lpae" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-cloud-tools-6.2.0-37-generic" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-headers-6.2.0-37-generic" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-headers-6.2.0-37-generic-64k" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-headers-6.2.0-37-generic-lpae" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-hwe-6.2-cloud-tools-6.2.0-37" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-hwe-6.2-cloud-tools-common" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-hwe-6.2-headers-6.2.0-37" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-hwe-6.2-tools-6.2.0-37" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-hwe-6.2-tools-common" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-hwe-6.2-tools-host" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-image-6.2.0-37-generic" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-image-6.2.0-37-generic-dbgsym" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-image-6.2.0-37-generic-lpae" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-image-6.2.0-37-generic-lpae-dbgsym" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-image-unsigned-6.2.0-37-generic" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-image-unsigned-6.2.0-37-generic-64k" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-image-unsigned-6.2.0-37-generic-64k-dbgsym" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-image-unsigned-6.2.0-37-generic-dbgsym" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-modules-6.2.0-37-generic" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-modules-6.2.0-37-generic-64k" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-modules-6.2.0-37-generic-lpae" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-modules-extra-6.2.0-37-generic" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-modules-ipu6-6.2.0-37-generic" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-modules-ivsc-6.2.0-37-generic" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-modules-iwlwifi-6.2.0-37-generic" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-source-6.2.0" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-tools-6.2.0-37-generic" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-tools-6.2.0-37-generic-64k" }, { "binary_version": "6.2.0-37.38~22.04.1", "binary_name": "linux-tools-6.2.0-37-generic-lpae" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-buildinfo-6.2.0-1017-lowlatency" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-buildinfo-6.2.0-1017-lowlatency-64k" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-cloud-tools-6.2.0-1017-lowlatency" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-headers-6.2.0-1017-lowlatency" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-headers-6.2.0-1017-lowlatency-64k" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-image-unsigned-6.2.0-1017-lowlatency" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-image-unsigned-6.2.0-1017-lowlatency-64k" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-image-unsigned-6.2.0-1017-lowlatency-64k-dbgsym" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-image-unsigned-6.2.0-1017-lowlatency-dbgsym" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-lowlatency-hwe-6.2-cloud-tools-6.2.0-1017" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-lowlatency-hwe-6.2-cloud-tools-common" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-lowlatency-hwe-6.2-headers-6.2.0-1017" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-lowlatency-hwe-6.2-tools-6.2.0-1017" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-lowlatency-hwe-6.2-tools-common" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-lowlatency-hwe-6.2-tools-host" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-modules-6.2.0-1017-lowlatency" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-modules-6.2.0-1017-lowlatency-64k" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-modules-ipu6-6.2.0-1017-lowlatency" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-modules-ivsc-6.2.0-1017-lowlatency" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-modules-iwlwifi-6.2.0-1017-lowlatency" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-tools-6.2.0-1017-lowlatency" }, { "binary_version": "6.2.0-1017.17~22.04.1", "binary_name": "linux-tools-6.2.0-1017-lowlatency-64k" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_version": "6.2.0-1012.12", "binary_name": "linux-buildinfo-6.2.0-1012-nvidia" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-buildinfo-6.2.0-1012-nvidia-64k" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-headers-6.2.0-1012-nvidia" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-headers-6.2.0-1012-nvidia-64k" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-image-unsigned-6.2.0-1012-nvidia" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-image-unsigned-6.2.0-1012-nvidia-64k" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-image-unsigned-6.2.0-1012-nvidia-64k-dbgsym" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-image-unsigned-6.2.0-1012-nvidia-dbgsym" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-modules-6.2.0-1012-nvidia" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-modules-6.2.0-1012-nvidia-64k" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-modules-extra-6.2.0-1012-nvidia" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-modules-nvidia-fs-6.2.0-1012-nvidia" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-modules-nvidia-fs-6.2.0-1012-nvidia-64k" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-nvidia-6.2-headers-6.2.0-1012" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-nvidia-6.2-tools-6.2.0-1012" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-nvidia-6.2-tools-host" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-tools-6.2.0-1012-nvidia" }, { "binary_version": "6.2.0-1012.12", "binary_name": "linux-tools-6.2.0-1012-nvidia-64k" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_version": "6.5.0-1007.7", "binary_name": "linux-buildinfo-6.5.0-1007-nvidia" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-buildinfo-6.5.0-1007-nvidia-64k" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-headers-6.5.0-1007-nvidia" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-headers-6.5.0-1007-nvidia-64k" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-image-unsigned-6.5.0-1007-nvidia" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-image-unsigned-6.5.0-1007-nvidia-64k" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-image-unsigned-6.5.0-1007-nvidia-64k-dbgsym" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-image-unsigned-6.5.0-1007-nvidia-dbgsym" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-modules-6.5.0-1007-nvidia" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-modules-6.5.0-1007-nvidia-64k" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-modules-extra-6.5.0-1007-nvidia" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-modules-ipu6-6.5.0-1007-nvidia" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-modules-ivsc-6.5.0-1007-nvidia" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-modules-iwlwifi-6.5.0-1007-nvidia" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-nvidia-6.5-headers-6.5.0-1007" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-nvidia-6.5-tools-6.5.0-1007" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-nvidia-6.5-tools-host" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-tools-6.5.0-1007-nvidia" }, { "binary_version": "6.5.0-1007.7", "binary_name": "linux-tools-6.5.0-1007-nvidia-64k" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_version": "6.1.0-1026.26", "binary_name": "linux-buildinfo-6.1.0-1026-oem" }, { "binary_version": "6.1.0-1026.26", "binary_name": "linux-headers-6.1.0-1026-oem" }, { "binary_version": "6.1.0-1026.26", "binary_name": "linux-image-unsigned-6.1.0-1026-oem" }, { "binary_version": "6.1.0-1026.26", "binary_name": "linux-image-unsigned-6.1.0-1026-oem-dbgsym" }, { "binary_version": "6.1.0-1026.26", "binary_name": "linux-modules-6.1.0-1026-oem" }, { "binary_version": "6.1.0-1026.26", "binary_name": "linux-modules-ipu6-6.1.0-1026-oem" }, { "binary_version": "6.1.0-1026.26", "binary_name": "linux-modules-ivsc-6.1.0-1026-oem" }, { "binary_version": "6.1.0-1026.26", "binary_name": "linux-modules-iwlwifi-6.1.0-1026-oem" }, { "binary_version": "6.1.0-1026.26", "binary_name": "linux-oem-6.1-headers-6.1.0-1026" }, { "binary_version": "6.1.0-1026.26", "binary_name": "linux-oem-6.1-tools-6.1.0-1026" }, { "binary_version": "6.1.0-1026.26", "binary_name": "linux-oem-6.1-tools-host" }, { "binary_version": "6.1.0-1026.26", "binary_name": "linux-tools-6.1.0-1026-oem" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_version": "6.5.0-1008.8", "binary_name": "linux-buildinfo-6.5.0-1008-oem" }, { "binary_version": "6.5.0-1008.8", "binary_name": "linux-headers-6.5.0-1008-oem" }, { "binary_version": "6.5.0-1008.8", "binary_name": "linux-image-unsigned-6.5.0-1008-oem" }, { "binary_version": "6.5.0-1008.8", "binary_name": "linux-image-unsigned-6.5.0-1008-oem-dbgsym" }, { "binary_version": "6.5.0-1008.8", "binary_name": "linux-modules-6.5.0-1008-oem" }, { "binary_version": "6.5.0-1008.8", "binary_name": "linux-modules-ipu6-6.5.0-1008-oem" }, { "binary_version": "6.5.0-1008.8", "binary_name": "linux-modules-ivsc-6.5.0-1008-oem" }, { "binary_version": "6.5.0-1008.8", "binary_name": "linux-modules-iwlwifi-6.5.0-1008-oem" }, { "binary_version": "6.5.0-1008.8", "binary_name": "linux-oem-6.5-headers-6.5.0-1008" }, { "binary_version": "6.5.0-1008.8", "binary_name": "linux-oem-6.5-lib-rust-6.5.0-1008-oem" }, { "binary_version": "6.5.0-1008.8", "binary_name": "linux-oem-6.5-tools-6.5.0-1008" }, { "binary_version": "6.5.0-1008.8", "binary_name": "linux-oem-6.5-tools-host" }, { "binary_version": "6.5.0-1008.8", "binary_name": "linux-tools-6.5.0-1008-oem" } ] }
{ "availability": "No subscription required", "priority_reason": "Local guest OS can affect the integrity of host x2APIC, potentially leading to denial of service.", "binaries": [ { "binary_version": "6.2.0-1009.10~22.04.1", "binary_name": "linux-buildinfo-6.2.0-1009-starfive" }, { "binary_version": "6.2.0-1009.10~22.04.1", "binary_name": "linux-headers-6.2.0-1009-starfive" }, { "binary_version": "6.2.0-1009.10~22.04.1", "binary_name": "linux-image-6.2.0-1009-starfive" }, { "binary_version": "6.2.0-1009.10~22.04.1", "binary_name": "linux-image-6.2.0-1009-starfive-dbgsym" }, { "binary_version": "6.2.0-1009.10~22.04.1", "binary_name": "linux-modules-6.2.0-1009-starfive" }, { "binary_version": "6.2.0-1009.10~22.04.1", "binary_name": "linux-modules-extra-6.2.0-1009-starfive" }, { "binary_version": "6.2.0-1009.10~22.04.1", "binary_name": "linux-starfive-6.2-headers-6.2.0-1009" }, { "binary_version": "6.2.0-1009.10~22.04.1", "binary_name": "linux-starfive-6.2-tools-6.2.0-1009" }, { "binary_version": "6.2.0-1009.10~22.04.1", "binary_name": "linux-tools-6.2.0-1009-starfive" } ] }