Skip to content

KVM: SEV: only access GHCB fields once (CVE-2023-4155)

Vitaly Kuznetsov requested to merge vkuznets/centos-stream-9:bug2213808 into main

Bugzilla: https://bugzilla.redhat.com/show_bug.cgi?id=2213808 CVE: CVE-2023-4155

Validation of the GHCB in KVM is susceptible to time-of-check/time-of-use vulnerability.

Signed-off-by: Vitaly Kuznetsov vkuznets@redhat.com

Edited by Vitaly Kuznetsov

Merge request reports

Loading