[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

255116

 
 

909

 
 

198683

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2022-33747Date: (C)2022-10-12   (M)2024-02-12


Arm: unbounded memory consumption for 2nd-level page tables Certain actions require e.g. removing pages from a guest's P2M (Physical-to-Machine) mapping. When large pages are in use to map guest pages in the 2nd-stage page tables, such a removal operation may incur a memory allocation (to replace a large mapping with individual smaller ones). These memory allocations are taken from the global memory pool. A malicious guest might be able to cause the global memory pool to be exhausted by manipulating its own P2M mappings.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V3 Severity:CVSS V2 Severity:
CVSS Score : 3.8CVSS Score :
Exploit Score: 2.0Exploit Score:
Impact Score: 1.4Impact Score:
 
CVSS V3 Metrics:CVSS V2 Metrics:
Attack Vector: LOCALAccess Vector:
Attack Complexity: LOWAccess Complexity:
Privileges Required: LOWAuthentication:
User Interaction: NONEConfidentiality:
Scope: CHANGEDIntegrity:
Confidentiality: NONEAvailability:
Integrity: NONE 
Availability: LOW 
  
Reference:
DSA-5272
FEDORA-2022-5b594b82ac
FEDORA-2022-99af00f60e
FEDORA-2022-d80cc73088
GLSA-202402-07
http://www.openwall.com/lists/oss-security/2022/10/11/5
http://xenbits.xen.org/xsa/advisory-409.html
https://xenbits.xenproject.org/xsa/advisory-409.txt

CWE    1
CWE-404
OVAL    7
oval:org.secpod.oval:def:124429
oval:org.secpod.oval:def:89047895
oval:org.secpod.oval:def:89047873
oval:org.secpod.oval:def:88426
...

© SecPod Technologies