CVE-2022-3344

KVM: SVM: nested shutdown interception could lead to host crash

References

Notes

 carnil> Fixed as well in 6.0.11 for 6.0.y.
 bwh> The first two fixes seem to be needed only after commit 2fcf4876ada8
 bwh> "KVM: nSVM: implement on demand allocation of the nested state" in
 bwh> 5.10. The last two are probably needed for 4.19 as well, though
 bwh> backporting them doesn't look straightforward.

Bugs

Status

Branch Status
4.19-buster-security needed
4.19-upstream-stable needed
5.10-bullseye-security needed
5.10-upstream-stable needed
6.1-bookworm-security N/A "Fixed before branch point"
6.1-upstream-stable N/A "Fixed before branch point"
6.6-upstream-stable unknown
6.8-upstream-stable unknown
sid released (6.0.12-1)
upstream released (6.1-rc7) [917401f26a6af5756d89b550a8e1bd50cf42b07e, 16ae56d7e0528559bf8dc9070e3bfd8ba3de80df, f9697df251438b0798780900e8b43bdb12a56d64, ed129ec9057f89d615ba0c81a4984a90345a1684]