CVE-2021-26932

CVSS v3.1 5.5 (Medium)
55% Progress
CVSS v2.0 1.9 (Low)
19% Progress
EPSS 0.04 % (15th)
0.04% Progress
Affected Products 9
Advisories 31

An issue was discovered in the Linux kernel 3.2 through 5.10.16, as used by Xen. Grant mapping operations often occur in batch hypercalls, where a number of operations are done in a single hypercall, the success or failure of each one is reported to the backend driver, and the backend driver then loops over the results, performing follow-up actions based on the success or failure of each operation. Unfortunately, when running in PV mode, the Linux backend drivers mishandle this: Some errors are ignored, effectively implying their success from the success of related batch elements. In other cases, errors resulting from one batch element lead to further batch elements not being inspected, and hence successful ones to not be possible to properly unmap upon error recovery. Only systems with Linux backends running in PV mode are vulnerable. Linux backends run in HVM / PVH modes are not vulnerable. This affects arch/*/xen/p2m.c and drivers/xen/gntdev.c.

Weaknesses
CWE-NVD-noinfo
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2021-02-17 02:15:13
(3 years ago)
Updated Date
2024-03-25 01:15:50
(5 months ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel from 3.2 version and 5.10.16 and prior versions cpe:2.3:o:linux:linux_kernel >= 3.2 <= 5.10.16

Configuration #2

    CPE23 From Up To
  Fedoraproject Fedora 32 cpe:2.3:o:fedoraproject:fedora:32
  Fedoraproject Fedora 33 cpe:2.3:o:fedoraproject:fedora:33

Configuration #3

    CPE23 From Up To
  Debian Linux 9.0 cpe:2.3:o:debian:debian_linux:9.0

Configuration #4

    CPE23 From Up To
  Netapp Cloud Backup cpe:2.3:a:netapp:cloud_backup:-
  Netapp Solidfire, Enterprise Sds & Hci Storage Node cpe:2.3:a:netapp:solidfire\%2c_enterprise_sds_\%26_hci_storage_node:-
  Netapp Solidfire & Hci Management Node cpe:2.3:a:netapp:solidfire_\%26_hci_management_node:-
  Netapp Hci Compute Node cpe:2.3:o:netapp:hci_compute_node:-

Configuration #5

AND
    CPE23 From Up To
OR  
  Netapp Hci H410c cpe:2.3:h:netapp:hci_h410c:-
OR  
  Running on/with
  Netapp Hci H410c Firmware cpe:2.3:o:netapp:hci_h410c_firmware:-
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...