CVE-2019-14821

Description

An out-of-bounds access issue was found in the Linux kernel, all versions through 5.3, in the way Linux kernels KVM hypervisor implements the Coalesced MMIO write operation. It operates on an MMIO ring buffer struct kvm_coalesced_mmio object, wherein write indices ring->first and ring->last value could be supplied by a host user-space process. An unprivileged host user or process with access to /dev/kvm device could use this flaw to crash the host kernel, resulting in a denial of service or potentially escalating privileges on the system.

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.106

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in IBM Security Guardium 10.6Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.1Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.0Windows
Linux kernel (USN-4157-1) linux-image-aws_5.0.0.1019.20_amd64.debLinux
Linux kernel (USN-4157-1) linux-image-gcp_5.0.0.1021.47_amd64.debLinux
Linux kernel (USN-4157-1) linux-image-gke_5.0.0.1021.47_amd64.debLinux
Linux kernel (USN-4157-1) linux-image-kvm_5.0.0.1020.20_amd64.debLinux
Linux kernel (USN-4157-1) linux-image-azure_5.0.0.1023.22_amd64.debLinux
Linux kernel (USN-4157-1) linux-image-generic_5.0.0.32.33_i386.debLinux
Linux kernel (USN-4157-1) linux-image-generic_5.0.0.32.33_amd64.debLinux
Linux kernel (USN-4157-1) linux-image-virtual_5.0.0.32.33_i386.debLinux
Linux kernel (USN-4157-1) linux-image-virtual_5.0.0.32.33_amd64.debLinux
Linux kernel (USN-4157-1) linux-image-lowlatency_5.0.0.32.33_i386.debLinux
Linux kernel (USN-4157-1) linux-image-lowlatency_5.0.0.32.33_amd64.debLinux
Linux kernel (USN-4157-1) linux-image-5.0.0-1019-aws_5.0.0-1019.21_amd64.debLinux
Linux kernel (USN-4157-1) linux-image-5.0.0-1020-kvm_5.0.0-1020.21_amd64.debLinux
Linux kernel (USN-4157-1) linux-image-5.0.0-1021-gcp_5.0.0-1021.21_amd64.debLinux
Linux kernel (USN-4157-1) linux-image-5.0.0-1023-azure_5.0.0-1023.24_amd64.debLinux
Linux kernel (USN-4157-1) linux-image-5.0.0-32-generic_5.0.0-32.34_i386.debLinux
Linux kernel (USN-4157-1) linux-image-5.0.0-32-generic_5.0.0-32.34_amd64.debLinux
Linux kernel (USN-4157-1) linux-image-5.0.0-32-lowlatency_5.0.0-32.34_i386.debLinux
Linux kernel (USN-4157-1) linux-image-5.0.0-32-lowlatency_5.0.0-32.34_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-gcp_5.0.0.1021.26_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-azure_5.0.0.1023.33_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-gke-5.0_5.0.0.1023.12_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-5.0.0-1021-gcp_5.0.0-1021.21~18.04.1_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-5.0.0-1023-gke_5.0.0-1023.23~18.04.2_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-5.0.0-1023-azure_5.0.0-1023.24~18.04.1_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-5.0.0-32-generic_5.0.0-32.34~18.04.2_i386.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-5.0.0-32-generic_5.0.0-32.34~18.04.2_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-generic-hwe-18.04_5.0.0.32.89_i386.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-generic-hwe-18.04_5.0.0.32.89_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-virtual-hwe-18.04_5.0.0.32.89_i386.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-virtual-hwe-18.04_5.0.0.32.89_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-5.0.0-32-lowlatency_5.0.0-32.34~18.04.2_i386.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-5.0.0-32-lowlatency_5.0.0-32.34~18.04.2_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-lowlatency-hwe-18.04_5.0.0.32.89_i386.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-4157-2) linux-image-lowlatency-hwe-18.04_5.0.0.32.89_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-aws_4.15.0.1052.51_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-gcp_4.15.0.1047.61_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-gke_4.15.0.1046.49_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-gke_4.15.0.1047.61_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-kvm_4.15.0.1048.48_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-oem_4.15.0.66.86_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-oem_4.15.0.1059.63_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-azure_4.15.0.1061.64_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-oracle_4.15.0.1027.20_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-oracle_4.15.0.1027.30_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-aws-hwe_4.15.0.1052.52_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-generic_4.15.0.66.68_i386.debLinux
Linux kernel (USN-4162-1) linux-image-generic_4.15.0.66.68_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-virtual_4.15.0.66.68_i386.debLinux
Linux kernel (USN-4162-1) linux-image-virtual_4.15.0.66.68_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-gke-4.15_4.15.0.1046.49_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-lowlatency_4.15.0.66.68_i386.debLinux
Linux kernel (USN-4162-1) linux-image-lowlatency_4.15.0.66.68_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-1046-gke_4.15.0-1046.49_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-1047-gcp_4.15.0-1047.50_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-1048-kvm_4.15.0-1048.48_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-1052-aws_4.15.0-1052.54_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-1052-aws_4.15.0-1052.54~16.04.1_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-1059-oem_4.15.0-1059.68_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-1061-azure_4.15.0-1061.66_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-66-generic_4.15.0-66.75_i386.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-66-generic_4.15.0-66.75_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-66-generic_4.15.0-66.75~16.04.1_i386.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-66-generic_4.15.0-66.75~16.04.1_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-generic-hwe-16.04_4.15.0.66.86_i386.debLinux
Linux kernel (USN-4162-1) linux-image-generic-hwe-16.04_4.15.0.66.86_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-virtual-hwe-16.04_4.15.0.66.86_i386.debLinux
Linux kernel (USN-4162-1) linux-image-virtual-hwe-16.04_4.15.0.66.86_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-1027-oracle_4.15.0-1027.30_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-1027-oracle_4.15.0-1027.30~16.04.1_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-66-lowlatency_4.15.0-66.75_i386.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-66-lowlatency_4.15.0-66.75_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-66-lowlatency_4.15.0-66.75~16.04.1_i386.debLinux
Linux kernel (USN-4162-1) linux-image-4.15.0-66-lowlatency_4.15.0-66.75~16.04.1_amd64.debLinux
Linux kernel (USN-4162-1) linux-image-lowlatency-hwe-16.04_4.15.0.66.86_i386.debLinux
Linux kernel (USN-4162-1) linux-image-lowlatency-hwe-16.04_4.15.0.66.86_amd64.debLinux
Linux kernel (USN-4163-1) linux-image-aws_4.4.0.1096.100_amd64.debLinux
Linux kernel (USN-4163-1) linux-image-kvm_4.4.0.1060.60_amd64.debLinux
Linux kernel (USN-4163-1) linux-image-generic_4.4.0.166.174_i386.debLinux
Linux kernel (USN-4163-1) linux-image-generic_4.4.0.166.174_amd64.debLinux
Linux kernel (USN-4163-1) linux-image-virtual_4.4.0.166.174_i386.debLinux
Linux kernel (USN-4163-1) linux-image-virtual_4.4.0.166.174_amd64.debLinux
Linux kernel (USN-4163-1) linux-image-lowlatency_4.4.0.166.174_i386.debLinux
Linux kernel (USN-4163-1) linux-image-lowlatency_4.4.0.166.174_amd64.debLinux
Linux kernel (USN-4163-1) linux-image-4.4.0-1060-kvm_4.4.0-1060.67_amd64.debLinux
Linux kernel (USN-4163-1) linux-image-4.4.0-1096-aws_4.4.0-1096.107_amd64.debLinux
Linux kernel (USN-4163-1) linux-image-4.4.0-166-generic_4.4.0-166.195_i386.debLinux
Linux kernel (USN-4163-1) linux-image-4.4.0-166-generic_4.4.0-166.195_amd64.debLinux
Linux kernel (USN-4163-1) linux-image-4.4.0-166-lowlatency_4.4.0-166.195_i386.debLinux
Linux kernel (USN-4163-1) linux-image-4.4.0-166-lowlatency_4.4.0-166.195_amd64.debLinux
SUSE-SU-2019:2879-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-default-4.12.14-95.37.1.x86_64.rpmLinux
SUSE-SU-2019:2879-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-default-debuginfo-4.12.14-95.37.1.x86_64.rpmLinux
SUSE-SU-2019:2879-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-default-debugsource-4.12.14-95.37.1.x86_64.rpmLinux
SUSE-SU-2019:2879-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-default-devel-4.12.14-95.37.1.x86_64.rpmLinux
SUSE-SU-2019:2879-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-default-devel-debuginfo-4.12.14-95.37.1.x86_64.rpmLinux
SUSE-SU-2019:2879-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-default-extra-4.12.14-95.37.1.x86_64.rpmLinux
SUSE-SU-2019:2879-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-default-extra-debuginfo-4.12.14-95.37.1.x86_64.rpmLinux
SUSE-SU-2019:2879-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-devel-4.12.14-95.37.1.noarch.rpmLinux
SUSE-SU-2019:2879-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-macros-4.12.14-95.37.1.noarch.rpmLinux
SUSE-SU-2019:2879-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-source-4.12.14-95.37.1.noarch.rpmLinux
SUSE-SU-2019:2879-1(SUSE Linux Enterprise Desktop 12-SP4 ) kernel-syms-4.12.14-95.37.1.x86_64.rpmLinux
SUSE-SU-2019:14218-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-default-extra-3.0.101-108.108.1.i586.rpmLinux
SUSE-SU-2019:14218-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-default-extra-3.0.101-108.108.1.x86_64.rpmLinux
SUSE-SU-2019:14218-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-pae-extra-3.0.101-108.108.1.i586.rpmLinux
SUSE-SU-2019:14218-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-trace-extra-3.0.101-108.108.1.x86_64.rpmLinux
SUSE-SU-2019:14218-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-xen-extra-3.0.101-108.108.1.i586.rpmLinux
SUSE-SU-2019:14218-1(SUSE Linux Enterprise Server 11-EXTRA ) kernel-xen-extra-3.0.101-108.108.1.x86_64.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update kernel-2.6.32-754.25.1.el6.i686.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update kernel-2.6.32-754.25.1.el6.x86_64.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update kernel-abi-whitelists-2.6.32-754.25.1.el6.noarch.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update kernel-debug-2.6.32-754.25.1.el6.i686.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update kernel-debug-2.6.32-754.25.1.el6.x86_64.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update kernel-debug-devel-2.6.32-754.25.1.el6.i686.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update kernel-debug-devel-2.6.32-754.25.1.el6.x86_64.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update kernel-devel-2.6.32-754.25.1.el6.i686.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update kernel-devel-2.6.32-754.25.1.el6.x86_64.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update kernel-doc-2.6.32-754.25.1.el6.noarch.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update kernel-firmware-2.6.32-754.25.1.el6.noarch.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update kernel-headers-2.6.32-754.25.1.el6.i686.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update kernel-headers-2.6.32-754.25.1.el6.x86_64.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update perf-2.6.32-754.25.1.el6.i686.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update perf-2.6.32-754.25.1.el6.x86_64.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update python-perf-2.6.32-754.25.1.el6.i686.rpmLinux
(RHSA-2019:4256) kernel security and bug fix update python-perf-2.6.32-754.25.1.el6.x86_64.rpmLinux
(RHSA-2020:0027) kpatch-patch security update kpatch-patch-3_10_0-1062-1-11.el7.x86_64.rpmLinux
(RHSA-2020:0027) kpatch-patch security update kpatch-patch-3_10_0-1062_4_1-1-6.el7.x86_64.rpmLinux
(RHSA-2020:0027) kpatch-patch security update kpatch-patch-3_10_0-1062_4_2-1-3.el7.x86_64.rpmLinux
(RHSA-2020:0027) kpatch-patch security update kpatch-patch-3_10_0-1062_4_3-1-3.el7.x86_64.rpmLinux
SUSE-SU-2020:0093-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-4.12.14-16.7.1.x86_64.rpmLinux
SUSE-SU-2020:0093-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-4.12.14-16.7.1.x86_64.rpmLinux
(RHSA-2020:0027) kpatch-patch security update kpatch-patch-3_10_0-1062_1_1-1-10.el7.x86_64.rpmLinux
(RHSA-2020:0027) kpatch-patch security update kpatch-patch-3_10_0-1062_1_2-1-9.el7.x86_64.rpmLinux
Kernel-uek update (ELSA-2020-5913) kernel-uek-4.14.35-2025.402.2.1.el7uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2020-5913) kernel-uek-debug-4.14.35-2025.402.2.1.el7uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2020-5913) kernel-uek-debug-devel-4.14.35-2025.402.2.1.el7uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2020-5913) kernel-uek-devel-4.14.35-2025.402.2.1.el7uek.x86_64.rpmLinux
Kernel-uek-tools update (ELSA-2020-5913) kernel-uek-tools-4.14.35-2025.402.2.1.el7uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2020-5913) kernel-uek-doc-4.14.35-2025.402.2.1.el7uek.noarch.rpmLinux
(RHSA-2020:0027)Important: security update kpatch-patch-3_10_0-1062-debuginfo-1-11.el7.x86_64.rpmLinux
(RHSA-2020:0027)Important: security update kpatch-patch-3_10_0-1062_1_1-debuginfo-1-10.el7.x86_64.rpmLinux
(RHSA-2020:0027)Important: security update kpatch-patch-3_10_0-1062_1_2-debuginfo-1-9.el7.x86_64.rpmLinux
(RHSA-2020:0027)Important: security update kpatch-patch-3_10_0-1062_4_1-debuginfo-1-6.el7.x86_64.rpmLinux
CVE-2019-14821NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234