CVE-2022-2196Initialization of a Resource with an Insecure Default in Kernel

Severity
8.8HIGHNVD
OSV5.5
EPSS
0.0%
top 87.80%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 9
Latest updateFeb 14

Description

A regression exists in the Linux Kernel within KVM: nVMX that allowed for speculative execution attacks. L2 can carry out Spectre v2 attacks on L1 due to L1 thinking it doesn't need retpolines or IBPB after running L2 due to KVM (L0) advertising eIBRS support to L1. An attacker at L2 with code execution can execute code on an indirect branch on the host machine. We recommend upgrading to Kernel 6.2 or past commit 2e7eab81425a

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:HExploitability: 2.0 | Impact: 6.0

Affected Packages13 packages

CVEListV5linux/linux_kernel< 2e7eab81425a+1
NVDlinux/linux_kernel5.4.475.4.233+4
Debianlinux/linux_kernel< 5.10.178-1+3
Ubuntulinux/linux_kernel< 5.4.0-146.163+1

Also affects: Debian Linux 10.0

Patches

🔴Vulnerability Details

14
OSV
linux-xilinx-zynqmp vulnerabilities2023-06-08
OSV
linux-bluefield vulnerabilities2023-04-14
OSV
linux-intel-iotg vulnerabilities2023-04-11
OSV
linux-aws-5.4, linux-azure-5.4, linux-gcp-5.4, linux-hwe-5.4, linux-ibm-5.4, linux-oracle-5.4, linux-raspi-5.4 vulnerabilities2023-03-29
OSV
linux-gke, linux-gke-5.15, linux-ibm, linux-kvm vulnerabilities2023-03-29

📋Vendor Advisories

15
Palo Alto
PAN-SA-2024-0001 Informational Bulletin: Impact of OSS CVEs in PAN-OS2024-02-14
Ubuntu
Linux kernel (Xilinx ZynqMP) vulnerabilities2023-06-08
Chrome
Long Term Support Channel Update for ChromeOS: CVE-2022-21962023-04-27
Ubuntu
Linux kernel (BlueField) vulnerabilities2023-04-14
Ubuntu
Linux kernel (Intel IoTG) vulnerabilities2023-04-11