CVE-2022-33747

NameCVE-2022-33747
DescriptionArm: unbounded memory consumption for 2nd-level page tables Certain actions require e.g. removing pages from a guest's P2M (Physical-to-Machine) mapping. When large pages are in use to map guest pages in the 2nd-stage page tables, such a removal operation may incur a memory allocation (to replace a large mapping with individual smaller ones). These memory allocations are taken from the global memory pool. A malicious guest might be able to cause the global memory pool to be exhausted by manipulating its own P2M mappings.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub advisories/code/issues, web search, more)
ReferencesDSA-5272-1
Debian Bugs1021668

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
xen (PTS)buster, buster (security)4.11.4+107-gef32c7afa2-1vulnerable
bullseye4.14.5+24-g87d90d511c-1vulnerable
bullseye (security)4.14.5+86-g1c354767d5-1fixed
bookworm, sid4.16.2+90-g0d39a6d1ae-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
xensourcebuster(unfixed)end-of-life
xensourcebullseye4.14.5+86-g1c354767d5-1DSA-5272-1
xensource(unstable)4.16.2+90-g0d39a6d1ae-11021668

Notes

[buster] - xen <end-of-life> (DSA 4677-1)
https://xenbits.xen.org/xsa/advisory-409.html

Search for package or bug name: Reporting problems