CVE-2023-4155

Aliases:UBUNTU-CVE-2023-4155DEBIAN-CVE-2023-4155CGA-22jv-c28x-pj4pCGA-2g33-j3hv-45hjCGA-32r2-xww3-5626CGA-36rq-g6w6-wwmrCGA-376r-2p2r-7mqwCGA-4338-664q-88rgCGA-46h9-h8p3-8rwvCGA-46qj-mw7c-gmm9CGA-4h32-8f4h-33j7CGA-4jvq-694j-vxr4CGA-4m95-mph2-2w7fCGA-5223-52f5-hpqgCGA-5crh-q6f5-5x5mCGA-5pxx-xp2g-5q6vCGA-634q-x93q-3xh3CGA-6c4j-755h-g36pCGA-6q29-xwv2-qp4jCGA-6vg9-276g-q244CGA-6xjq-249v-98h4CGA-76hw-c3vm-3932CGA-7fr2-j949-q254CGA-7fv2-m8wv-p8vmCGA-7rqp-h2vj-5rh5CGA-7vp5-rvr6-gxw4CGA-82m6-q4wv-qf4hCGA-842r-457f-q6h7CGA-859v-252g-6pxvCGA-86fj-p32p-7qr7CGA-87pc-6p65-f89qCGA-8h33-63pv-jjx8CGA-946m-vrx4-5xppCGA-95p4-56q2-3q42CGA-964x-2w5p-45qcCGA-99qc-5w57-f529CGA-9ffj-mwwr-f5gwCGA-9hv8-78mw-fgqpCGA-9q46-6jj9-4f4mCGA-cp8x-4h23-57jxCGA-f76j-94m5-r5vfCGA-f99j-pp95-8w97CGA-ffmq-6jv3-69xqCGA-fmvj-37ph-8r9vCGA-fpp3-3j57-crpvCGA-fvpr-25ch-h5v5CGA-fx56-q53j-45wgCGA-g36m-w9jx-cx4wCGA-g3vw-cc3h-mfp9CGA-g3wj-jqcf-68j2CGA-g5vq-cg39-jxfjCGA-g7g4-wp75-2c6mCGA-g8xg-r3gp-9px7CGA-gfwf-hmgj-76m7CGA-gjpv-w5p3-7788CGA-gww3-cwx7-pc83CGA-h68m-5pvj-5rvvCGA-h96v-93vh-33q4CGA-h9pv-9ccv-5pmjCGA-hcf2-g5vp-79m6CGA-hf9q-6gc3-xw36CGA-hg4j-vw8f-vhw3CGA-hhcv-8cxg-v95pCGA-hj83-rmvw-m7f4CGA-j23w-5gvx-mm43CGA-j339-632g-7f6gCGA-j7c3-9g87-664rCGA-jmfj-5222-3hj5CGA-m2wm-833m-8vxfCGA-m4xw-jv98-2gcmCGA-m5r8-8jhv-pm55CGA-m9rv-2c29-q8jpCGA-mc93-r8wp-cg88CGA-mg39-8rw6-h6fxCGA-mq6v-6w2g-g93jCGA-mr9x-3284-xgm8CGA-mwcv-fpp5-836qCGA-p69p-qrjm-m8f2CGA-pfjp-c8fw-g856CGA-pgrw-xf2p-rgg3CGA-pmf6-p5f8-7gjvCGA-q4mf-8qx3-4pc3CGA-q4v7-47r9-fwmqCGA-q683-cxxw-hrpcCGA-q8q6-vjx6-c93pCGA-qccj-9v52-vv78CGA-qcgq-w3qx-hgqpCGA-qh32-jp65-wcw6CGA-qh5h-mc2j-v9g2CGA-qp3x-fxgg-m9mmCGA-r3c2-5m33-2fmvCGA-rc5q-xq9p-73q5CGA-rfxc-g3p7-4hpmCGA-rmmj-8w98-jgr8CGA-rp2g-mwc7-3xvrCGA-rrj9-765g-jvfpCGA-v6v6-96cj-g2fwCGA-vjvv-r7jm-54w5CGA-vmc9-pwqh-7gh9CGA-vpfm-cmpp-jm7qCGA-vq5v-vv3j-5546CGA-w239-qfmw-rfxrCGA-w85h-fpj9-pcm3CGA-w9q6-m4vw-2pjqCGA-wfcr-pf9m-j93xCGA-wfgm-76mq-p52hCGA-wvvx-cfp2-p6cpCGA-wxf9-7g76-9xjhCGA-x2rw-8vm5-m837CGA-x5jj-2jjx-7w2vCGA-x5m3-82hv-cv6fCGA-x68g-hmp4-qqgxCGA-x6rw-jhm9-f3jqCGA-x87v-j3jv-f89rCGA-xvgp-xc8j-938cCGA-xxp5-2fvg-2qfqCGA-qp7h-jxp5-rw42CGA-x9qg-g6fr-r896CGA-6526-ggpm-c5q3CGA-68cq-q444-v8qcCGA-78xq-6j6h-v53cCGA-7v5x-fvrp-c9vgCGA-87rf-2hvw-jvgqCGA-8v7p-rcjv-4vccCGA-cw65-rgrp-pvm2CGA-fr7c-874c-gm2wCGA-h9p5-h6jw-66hfCGA-mccm-5f5g-7gfvCGA-rcpv-fq34-q37fCGA-rqr7-mxg3-9m65CGA-vp85-qwj8-427fCGA-vqmh-qrpw-3gv8CGA-wqgx-jc77-g7mxCGA-3r72-9vwh-vf68CGA-47qf-x395-44h5CGA-6w97-xv27-g23vCGA-f3m3-mm6h-p8vmCGA-f9fm-vcw5-fqcgCGA-v82v-pj89-9j2cCGA-m399-w54m-7g9wCGA-529p-6jqc-cfmfCGA-9qhh-f6vr-xcp5CGA-f7gj-qmr7-64pw
Advisory lineage Upstream: 0 Downstream: 27
Modified
Published: 13 Sept 2023, 16:11
Last modified:27 Feb 2025, 20:52

Vulnerability Summary

Overall Risk (default)
low
22/100
CVSS Score
5.6 MEDIUM
v3.1 (nvd)
EPSS Score
0.17% LOW
0% probability +0.16%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

13 Sept 2023, 16:11
Published
Vulnerability first disclosed
27 Feb 2025, 20:52
Last Modified
Vulnerability information updated

Description

A flaw was found in KVM AMD Secure Encrypted Virtualization (SEV) in the Linux kernel. A KVM guest using SEV-ES or SEV-SNP with multiple vCPUs can trigger a double fetch race condition vulnerability and invoke the `VMGEXIT` handler recursively. If an attacker manages to call the handler multiple times, they can trigger a stack overflow and cause a denial of service or potentially guest-to-host escape in kernel configurations without stack guard pages (`CONFIG_VMAP_STACK`).

CVSS Metrics

  • v3.1MEDIUMScore: 5.3CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:N/A:H
  • v3.1MEDIUMScore: 5.6CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:H

EPSS Trends

Current EPSS score: 0.17% Percentile: 7%

Techniques & Countermeasures

  • CWE-367Time-of-check Time-of-use (TOCTOU) Race Condition

    The product checks the state of a resource before using that resource, but the resource's state can change between the check and the use in a way that invalidates the results of the check.

Affected Systems

  • chainguardhyperv-daemons-6.18

    < 0

  • chainguardhyperv-daemons-generic

    < 0

  • chainguardlinux-aws-6.12

    < 0 | < 6.12.65-r0

  • chainguardlinux-aws-6.12-boot-installed

    < 0

  • chainguardlinux-aws-6.12-fips-boot-installed

    < 0

  • chainguardlinux-aws-6.12-headers

    < 0

  • chainguardlinux-aws-6.12-modules

    < 0

  • chainguardlinux-aws-6.18

    < 0 | < 6.18.10-r0

  • chainguardlinux-aws-6.18-boot-installed

    < 0

  • chainguardlinux-aws-6.18-fips-boot-installed

    < 0

  • chainguardlinux-aws-6.18-headers

    < 0

  • chainguardlinux-aws-6.18-modules

    < 0

  • chainguardlinux-aws-generic

    < 0 | < 6.18.5-r0

  • chainguardlinux-aws-generic-boot-installed

    < 0

  • chainguardlinux-aws-generic-fips-boot-installed

    < 0

  • chainguardlinux-aws-generic-headers

    < 0

  • chainguardlinux-aws-generic-modules

    < 0

  • chainguardlinux-azure-6.12

    < 6.12.65-r1 | < 0

  • chainguardlinux-azure-6.18

    < 0

  • chainguardlinux-azure-6.18-boot-installed

    < 0

  • chainguardlinux-azure-6.18-fips-boot-installed

    < 0

  • chainguardlinux-azure-6.18-headers

    < 0

  • chainguardlinux-azure-6.18-modules

    < 0

  • chainguardlinux-azure-generic

    < 6.18.5-r0 | < 0

  • chainguardlinux-azure-generic-boot-installed

    < 0

  • chainguardlinux-azure-generic-fips-boot-installed

    < 0

  • chainguardlinux-azure-generic-headers

    < 0

  • chainguardlinux-azure-generic-modules

    < 0

  • chainguardlinux-desktop-6.18

    all

  • chainguardlinux-desktop-6.18-bootc

    all

  • chainguardlinux-desktop-6.18-bootc-boot-installed

    all

  • chainguardlinux-desktop-6.18-headers

    all

  • chainguardlinux-desktop-6.18-modules

    all

  • chainguardlinux-desktop-7.2

    all

  • chainguardlinux-desktop-7.2-bootc

    all

  • chainguardlinux-desktop-7.2-bootc-boot-installed

    all

  • chainguardlinux-desktop-7.2-headers

    all

  • chainguardlinux-desktop-7.2-modules

    all

  • chainguardlinux-firecracker-6.18

    all

  • chainguardlinux-gcp-6.12

    < 0 | < 6.12.65-r0

  • chainguardlinux-gcp-6.18

    < 6.18.10-r0 | < 0

  • chainguardlinux-gcp-6.18-boot-installed

    < 0

  • chainguardlinux-gcp-6.18-fips-boot-installed

    < 0

  • chainguardlinux-gcp-6.18-headers

    < 0

  • chainguardlinux-gcp-6.18-modules

    < 0

  • chainguardlinux-gcp-generic

    < 0 | < 6.18.5-r0

  • chainguardlinux-gcp-generic-boot-installed

    < 0

  • chainguardlinux-gcp-generic-fips-boot-installed

    < 0

  • chainguardlinux-gcp-generic-headers

    < 0

  • chainguardlinux-gcp-generic-modules

    < 0

Showing first 50 affected entries in server-rendered view.

References (15)