cbcvebase.
CVE-2021-28702
published 2021-10-06

CVE-2021-28702: PCI devices with RMRRs not deassigned correctly Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Reserved Memory Region…

PriorityP336high7.6CVSS 3.1
AVPACLPRNUINSCCHIHAH
EPSS
0.43%
35.0th percentile
PCI devices with RMRRs not deassigned correctly Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Reserved Memory Region Reporting, "RMRR"). These are typically used for platform tasks such as legacy USB emulation. If such a device is passed through to a guest, then on guest shutdown the device is not properly deassigned. The IOMMU configuration for these devices which are not properly deassigned ends up pointing to a freed data structure, including the IO Pagetables. Subsequent DMA or interrupts from the device will have unpredictable behaviour, ranging from IOMMU faults to memory corruption.

Affected

11 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianxen< xen 4.14.3+32-g9de3671772-1 (bookworm)xen 4.14.3+32-g9de3671772-1 (bookworm)
fedoraprojectfedora
fedoraprojectfedora
fedoraprojectfedora
xenxen>= 0 < 4.14.3+32-g9de3671772-1~deb11u14.14.3+32-g9de3671772-1~deb11u1
xenxen>= 0 < 4.14.3+32-g9de3671772-14.14.3+32-g9de3671772-1
xenxen>= 0 < 4.14.3+32-g9de3671772-14.14.3+32-g9de3671772-1
xenxen>= 0 < 4.14.3+32-g9de3671772-14.14.3+32-g9de3671772-1
xenxen>= 4.12.x < unspecifiedunspecified
xenxen4.13.0 – 4.15.1

CVSS provenance

nvdv3.17.6HIGHCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv7.6HIGH
vendor_debian7.6HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.