race in VT-d domain ID cleanup Xen domain IDs are up to 15 bits wide. VT-d hardware may allow for only less than 15 bits to hold a domain ID associating a physical device with a particular domain. Therefore internally Xen domain IDs are mapped to the smaller value range. The cleaning up of the housekeeping structures has a race, allowing for VT-d domain IDs to be leaked and flushes to be bypassed.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: XEN
Published: 2022-04-05T00:00:00
Updated: 2024-02-04T08:06:35.200055
Reserved: 2022-03-02T00:00:00
Link: CVE-2022-26357
JSON object: View
NVD Information
Status : Modified
Published: 2022-04-05T13:15:07.777
Modified: 2024-02-04T08:15:10.110
Link: CVE-2022-26357
JSON object: View
Redhat Information
No data.
CWE