CVE-2020-27171
Description
An issue was discovered in the Linux kernel before 5.11.8. kernel/bpf/verifier.c has an off-by-one error (with a resultant integer underflow) affecting out-of-bounds speculation on pointer arithmetic, leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information from kernel memory, aka CID-10d2bb2e6b1d.
Risk Information
Base Score
6.0
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H
EPSS Score
Exploitation Probability
0.179
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Linux kernel (USN-4887-1) linux-image-aws_5.4.0.1041.24_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-aws_5.4.0.1041.42_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-aws_5.8.0.1027.29_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-gcp_5.4.0.1040.27_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-gcp_5.4.0.1040.49_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-gcp_5.8.0.1026.26_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-gke_5.8.0.1026.26_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-kvm_5.4.0.1036.34_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-kvm_5.8.0.1022.24_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-oem_5.4.0.70.73_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-oem_5.4.0.70.78~18.04.63_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-azure_5.4.0.1043.23_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-azure_5.4.0.1043.41_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-azure_5.8.0.1026.26_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-gkeop_5.4.0.1012.15_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-oracle_5.4.0.1041.38_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-oracle_5.8.0.1024.23_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-oracle_5.4.0.1041.44~18.04.23_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-generic_5.4.0.70.73_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-generic_5.8.0.48.53_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-gke-5.3_5.3.0.1041.24_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-gke-5.4_5.4.0.1039.41~18.04.6_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-virtual_5.4.0.70.73_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-virtual_5.8.0.48.53_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-oem-osp1_5.4.0.70.73_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-oem-osp1_5.4.0.70.78~18.04.63_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-gkeop-5.3_5.3.0.72.129_i386.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-gkeop-5.3_5.3.0.72.129_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-gkeop-5.4_5.4.0.1012.15_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-gkeop-5.4_5.4.0.1012.13~18.04.13_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-oem-20.04_5.8.0.48.53_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-oem-20.04_5.6.0.1052.48_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-lowlatency_5.4.0.70.73_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-lowlatency_5.8.0.48.53_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-oem-20.04b_5.10.0.1019.20_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.3.0-1041-gke_5.3.0-1041.44_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-1036-kvm_5.4.0-1036.37_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-1039-gke_5.4.0-1039.41~18.04.1_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-1040-gcp_5.4.0-1040.43_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-1040-gcp_5.4.0-1040.43~18.04.1_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-1041-aws_5.4.0-1041.43_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-1041-aws_5.4.0-1041.43~18.04.1_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.6.0-1052-oem_5.6.0-1052.56_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.8.0-1022-kvm_5.8.0-1022.24_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.8.0-1026-gcp_5.8.0-1026.27_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.8.0-1027-aws_5.8.0-1027.29_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.10.0-1019-oem_5.10.0-1019.20_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.3.0-72-generic_5.3.0-72.68_i386.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.3.0-72-generic_5.3.0-72.68_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-1012-gkeop_5.4.0-1012.13_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-1012-gkeop_5.4.0-1012.13~18.04.1_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-1043-azure_5.4.0-1043.45_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-1043-azure_5.4.0-1043.45~18.04.1_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-70-generic_5.4.0-70.78_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-70-generic_5.4.0-70.78~18.04.1_i386.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-70-generic_5.4.0-70.78~18.04.1_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.8.0-1026-azure_5.8.0-1026.28_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.8.0-48-generic_5.8.0-48.54_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.8.0-48-generic_5.8.0-48.54~20.04.1_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-1041-oracle_5.4.0-1041.44_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-1041-oracle_5.4.0-1041.44~18.04.1_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.8.0-1024-oracle_5.8.0-1024.25_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-generic-hwe-18.04_5.4.0.70.78~18.04.63_i386.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-generic-hwe-18.04_5.4.0.70.78~18.04.63_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-generic-hwe-20.04_5.8.0.48.54~20.04.32_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-virtual-hwe-18.04_5.4.0.70.78~18.04.63_i386.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-virtual-hwe-18.04_5.4.0.70.78~18.04.63_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-virtual-hwe-20.04_5.8.0.48.54~20.04.32_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.3.0-72-lowlatency_5.3.0-72.68_i386.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.3.0-72-lowlatency_5.3.0-72.68_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-70-lowlatency_5.4.0-70.78_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-70-lowlatency_5.4.0-70.78~18.04.1_i386.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.4.0-70-lowlatency_5.4.0-70.78~18.04.1_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.8.0-48-lowlatency_5.8.0-48.54_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-5.8.0-48-lowlatency_5.8.0-48.54~20.04.1_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-lowlatency-hwe-18.04_5.4.0.70.78~18.04.63_i386.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-lowlatency-hwe-18.04_5.4.0.70.78~18.04.63_amd64.deb | Linux |
| Linux kernel (USN-4887-1) linux-image-lowlatency-hwe-20.04_5.8.0.48.54~20.04.32_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-gcp_4.15.0.1096.97_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-gke_4.15.0.1096.97_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-kvm_4.15.0.1088.84_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-oem_4.15.0.140.135_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-azure_4.15.0.1111.102_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-oracle_4.15.0.1068.56_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-aws-hwe_4.15.0.1097.90_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-generic_4.15.0.140.127_i386.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-generic_4.15.0.140.127_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-virtual_4.15.0.140.127_i386.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-virtual_4.15.0.140.127_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-dell300x_4.15.0.1015.17_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-lowlatency_4.15.0.140.127_i386.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-lowlatency_4.15.0.140.127_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-aws-lts-18.04_4.15.0.1097.100_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-gcp-lts-18.04_4.15.0.1096.114_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-1088-kvm_4.15.0-1088.90_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-1096-gcp_4.15.0-1096.109_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-1096-gcp_4.15.0-1096.109~16.04.1_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-1097-aws_4.15.0-1097.104_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-1097-aws_4.15.0-1097.104~16.04.1_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-azure-lts-18.04_4.15.0.1111.84_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-oracle-lts-18.04_4.15.0.1068.78_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-1111-azure_4.15.0-1111.123_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-1111-azure_4.15.0-1111.123~16.04.1_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-generic-hwe-16.04_4.15.0.140.135_i386.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-generic-hwe-16.04_4.15.0.140.135_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-virtual-hwe-16.04_4.15.0.140.135_i386.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-virtual-hwe-16.04_4.15.0.140.135_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-1068-oracle_4.15.0-1068.76_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-1068-oracle_4.15.0-1068.76~16.04.1_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-140-generic_4.15.0-140.144_i386.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-140-generic_4.15.0-140.144_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-140-generic_4.15.0-140.144~16.04.1_i386.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-140-generic_4.15.0-140.144~16.04.1_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-1015-dell300x_4.15.0-1015.19_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-lowlatency-hwe-16.04_4.15.0.140.135_i386.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-lowlatency-hwe-16.04_4.15.0.140.135_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-140-lowlatency_4.15.0-140.144_i386.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-140-lowlatency_4.15.0-140.144_amd64.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-140-lowlatency_4.15.0-140.144~16.04.1_i386.deb | Linux |
| Linux kernel (USN-4890-1) linux-image-4.15.0-140-lowlatency_4.15.0-140.144~16.04.1_amd64.deb | Linux |
| SUSE-SU-2021:1175-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-4.12.14-16.50.1.x86_64.rpm | Linux |
| SUSE-SU-2021:1175-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-4.12.14-16.50.1.x86_64.rpm | Linux |
| SUSE-SU-2021:1175-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-base-debuginfo-4.12.14-16.50.1.x86_64.rpm | Linux |
| SUSE-SU-2021:1175-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-debuginfo-4.12.14-16.50.1.x86_64.rpm | Linux |
| SUSE-SU-2021:1175-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-debugsource-4.12.14-16.50.1.x86_64.rpm | Linux |
| SUSE-SU-2021:1175-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-azure-devel-4.12.14-16.50.1.x86_64.rpm | Linux |
| SUSE-SU-2021:1175-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-devel-azure-4.12.14-16.50.1.noarch.rpm | Linux |
| SUSE-SU-2021:1175-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-source-azure-4.12.14-16.50.1.noarch.rpm | Linux |
| SUSE-SU-2021:1175-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-syms-azure-4.12.14-16.50.1.x86_64.rpm | Linux |
| Kernel-uek update (ELSA-2021-9140) kernel-uek-5.4.17-2102.200.13.el8uek.x86_64.rpm | Linux |
| Kernel-uek-debug update (ELSA-2021-9140) kernel-uek-debug-5.4.17-2102.200.13.el8uek.x86_64.rpm | Linux |
| Kernel-uek-debug-devel update (ELSA-2021-9140) kernel-uek-debug-devel-5.4.17-2102.200.13.el8uek.x86_64.rpm | Linux |
| Kernel-uek-devel update (ELSA-2021-9140) kernel-uek-devel-5.4.17-2102.200.13.el8uek.x86_64.rpm | Linux |
| Kernel-uek-doc update (ELSA-2021-9140) kernel-uek-doc-5.4.17-2102.200.13.el8uek.noarch.rpm | Linux |
| Kernel-uek-container update (ELSA-2021-9141) kernel-uek-container-5.4.17-2102.200.13.el8.x86_64.rpm | Linux |
| Kernel-uek-container-debug update (ELSA-2021-9141) kernel-uek-container-debug-5.4.17-2102.200.13.el8.x86_64.rpm | Linux |
| SUSE-SU-2021:1210-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-4.12.14-122.66.2.x86_64.rpm | Linux |
| SUSE-SU-2021:1210-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-base-4.12.14-122.66.2.x86_64.rpm | Linux |
| SUSE-SU-2021:1210-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-base-debuginfo-4.12.14-122.66.2.x86_64.rpm | Linux |
| SUSE-SU-2021:1210-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-debuginfo-4.12.14-122.66.2.x86_64.rpm | Linux |
| SUSE-SU-2021:1210-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-debugsource-4.12.14-122.66.2.x86_64.rpm | Linux |
| SUSE-SU-2021:1210-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-devel-4.12.14-122.66.2.x86_64.rpm | Linux |
| SUSE-SU-2021:1210-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-default-devel-debuginfo-4.12.14-122.66.2.x86_64.rpm | Linux |
| SUSE-SU-2021:1210-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-devel-4.12.14-122.66.2.noarch.rpm | Linux |
| SUSE-SU-2021:1210-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-macros-4.12.14-122.66.2.noarch.rpm | Linux |
| SUSE-SU-2021:1210-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-source-4.12.14-122.66.2.noarch.rpm | Linux |
| SUSE-SU-2021:1210-1(SUSE Linux Enterprise Server 12-SP5 ) kernel-syms-4.12.14-122.66.2.x86_64.rpm | Linux |
| Kernel-uek update (ELSA-2021-9222) kernel-uek-4.14.35-2047.503.1.el7uek.x86_64.rpm | Linux |
| Kernel-uek-debug update (ELSA-2021-9222) kernel-uek-debug-4.14.35-2047.503.1.el7uek.x86_64.rpm | Linux |
| Kernel-uek-debug-devel update (ELSA-2021-9222) kernel-uek-debug-devel-4.14.35-2047.503.1.el7uek.x86_64.rpm | Linux |
| Kernel-uek-devel update (ELSA-2021-9222) kernel-uek-devel-4.14.35-2047.503.1.el7uek.x86_64.rpm | Linux |
| Kernel-uek-doc update (ELSA-2021-9222) kernel-uek-doc-4.14.35-2047.503.1.el7uek.noarch.rpm | Linux |
| Kernel-uek-tools update (ELSA-2021-9222) kernel-uek-tools-4.14.35-2047.503.1.el7uek.x86_64.rpm | Linux |
| kernel Security Update (ALAS-2021-1627) kernel-livepatch-4.14.231-173.360-1.0-0.amzn2.x86_64.rpm | Linux |
Patch Details
No records foundReferences
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234