MEDIUM
lock order inversion in transitive grant copy handling As part of XSA-226 a missing cleanup call was inserted on an error handling path
Published Oct 11, 2022
5.6
MEDIUMCVSS 3.1
EPSS 0.26%
Description
lock order inversion in transitive grant copy handling As part of XSA-226 a missing cleanup call was inserted on an error handling path. While doing so, locking requirements were not paid attention to. As a result two cooperating guests granting each other transitive grants can cause locks to be acquired nested within one another, but in respectively opposite order. With suitable timing between the involved grant copy operations this may result in the locking up of a CPU.
Affected products
No data.
Configuration 2
OR
- 35
- 36
- 37
Configuration 3
- 11.0
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (9)
- http://www.openwall.com/lists/oss-security/2022/10/11/2 mailing-listMailing ListMitigationPatchThird Party Advisory
- http://xenbits.xen.org/xsa/advisory-411.html MitigationPatchVendor Advisory
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-36787 Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TJOMUNGW6VTK5CZZRLWLVVEOUPEQBRHI/ vendor-advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XWSC77GS5NATI3TT7FMVPULUPXR635XQ/ vendor-advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YZVXG7OOOXCX6VIPEMLFDPIPUTFAYWPE/ vendor-advisory
- https://security.gentoo.org/glsa/202402-07 vendor-advisory
- https://www.debian.org/security/2022/dsa-5272 vendor-advisoryThird Party Advisory
- https://xenbits.xenproject.org/xsa/advisory-411.txt MitigationPatchVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| http://www.openwall.com/lists/oss-security/2022/10/11/2 | mailing-listMailing ListMitigationPatchThird Party Advisory | |
| http://xenbits.xen.org/xsa/advisory-411.html | MitigationPatchVendor Advisory | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-36787 | Advisory | |
| https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TJOMUNGW6VTK5CZZRLWLVVEOUPEQBRHI/ | vendor-advisory | |
| https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XWSC77GS5NATI3TT7FMVPULUPXR635XQ/ | vendor-advisory | |
| https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YZVXG7OOOXCX6VIPEMLFDPIPUTFAYWPE/ | vendor-advisory | |
| https://security.gentoo.org/glsa/202402-07 | vendor-advisory | |
| https://www.debian.org/security/2022/dsa-5272 | vendor-advisoryThird Party Advisory | |
| https://xenbits.xenproject.org/xsa/advisory-411.txt | MitigationPatchVendor Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner XEN
Published Oct 11, 2022
Updated Aug 3, 2024
Reserved Jun 15, 2022
Link CVE-2022-33748
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2022-36787 Assigner XEN
Published Oct 11, 2022
Updated Aug 3, 2024
Exploited since n/a
Link EUVD-2022-36787