CVE-2021-28713

Updated: 2023-12-06

CWE: Unspecified

Description:

Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Xen offers the ability to run PV backends in regular unprivileged guests, typically referred to as "driver domains". Running PV backends in driver domains has one primary security advantage: if a driver domain gets compromised, it doesn't have the privileges to take over the system. However, a malicious driver domain could try to attack other guests via sending events at a high frequency leading to a Denial of Service in the guest due to trying to service interrupts for elongated amounts of time. There are three affected backends: * blkfront patch 1, CVE-2021-28711 * netfront patch 2, CVE-2021-28712 * hvc_xen (console) patch 3, CVE-2021-28713

CVSS3: 6.5


Vendor State

OS Vendor version Errata
Ubuntu 18.04 4.15.0-169.177 USN-5298-1
Ubuntu 18.04 AWS 4.15.0-1121.129 USN-5298-1
Debian 9 4.9.303-1 DLA-2940-1
Debian 8 backports 4.9.303-1 DLA-2940-1
Amazon Linux 1 4.14.262-135.489.amzn1 ALAS-2022-1563
Amazon Linux 2 4.14.262-200.489.amzn2 ALAS2-2022-1749
Ubuntu 18.04 HWE Focal 5.4.0-105.119~18.04.1 USN-5338-1
Ubuntu 18.04 GCP 4.15.0-1116.130 USN-5298-1
Debian 10 4.19.232-1 DSA-5096-1
Ubuntu 18.04 Azure 4.15.0-1131.144 USN-5298-1
Debian 10 cloud 4.19.232-1 DSA-5096-1
Debian 9 backports 4.19.232-1~deb9u1 DLA-2941-1
Ubuntu 20.04 5.4.0-105.119 USN-5338-1
Ubuntu 18.04 AWS Focal 5.4.0-1069.73~18.04.1 USN-5338-1
Ubuntu 18.04 Azure Focal 5.4.0-1073.76~18.04.1 USN-5338-1
Ubuntu 20.04 AWS 5.4.0-1069.73 USN-5338-1
Ubuntu 20.04 Azure 5.4.0-1073.76 USN-5338-1
Ubuntu 16.04 HWE ESM 4.15.0-169.177~16.04.1 USN-5298-1
Ubuntu 16.04 AWS ESM 4.4.0-1155.170 USN-6001-1
Ubuntu 16.04 GCP ESM 4.15.0-1116.130~16.04.1 USN-5298-1
Ubuntu 16.04 AWS HWE ESM 4.15.0-1120.128~16.04.1 USN-5298-1
Ubuntu 16.04 Azure ESM 4.15.0-1131.144~16.04.1 USN-5298-1
Debian 11 5.10.92-1 DSA-5050-1
Amazon Linux 2 5.4 5.4.172-90.336.amzn2 ALAS2KERNEL-5.4-2022-021
Amazon Linux 2 5.10 5.10.93-87.444.amzn2 ALAS2KERNEL-5.10-2022-009

KernelCare State

OS Original kernel version State
Ubuntu 18.04
4.15.0-130.134 show all hide all
4.15.0-100.101 4.15.0-107.108 4.15.0-116.117 4.15.0-128.131 4.15.0-153.160 4.15.0-20.21 4.15.0-29.31 4.15.0-35.38 4.15.0-38.41 4.15.0-48.51 4.15.0-53.57 4.15.0-56.62 4.15.0-59.66 4.15.0-62.69 4.15.0-63.72 4.15.0-71.80 4.15.0-73.82 4.15.0-75.85 4.15.0-90.91 4.15.0-162.170 4.15.0-166.174 4.15.0-121.123 4.15.0-132.136 4.15.0-129.132 4.15.0-54.58 4.15.0-42.45 4.15.0-161.169 4.15.0-70.79 4.15.0-109.110 4.15.0-64.73 4.15.0-115.116 4.15.0-52.56 4.15.0-106.107 4.15.0-33.36 4.15.0-74.84 4.15.0-123.126 4.15.0-144.148 4.15.0-60.67 4.15.0-136.140 4.15.0-76.86 4.15.0-108.109 4.15.0-91.92 4.15.0-44.47 4.15.0-24.26 4.15.0-112.113 4.15.0-51.55 4.15.0-36.39 4.15.0-34.37 4.15.0-151.157 4.15.0-159.167 4.15.0-126.129 4.15.0-118.119 4.15.0-147.151 4.15.0-69.78 4.15.0-39.42 4.15.0-97.98 4.15.0-47.50 4.15.0-58.64 4.15.0-140.144 4.15.0-154.161 4.15.0-139.143 4.15.0-65.74 4.15.0-163.171 4.15.0-43.46 4.15.0-117.118 4.15.0-32.35 4.15.0-122.124 4.15.0-72.81 4.15.0-143.147 4.15.0-167.175 4.15.0-46.49 4.15.0-23.25 4.15.0-55.60 4.15.0-99.100 4.15.0-142.146 4.15.0-88.88 4.15.0-141.145 4.15.0-50.54 4.15.0-22.24 4.15.0-30.32 4.15.0-156.163 4.15.0-101.102 4.15.0-94.95 4.15.0-137.141 4.15.0-96.97 4.15.0-66.75 4.15.0-111.112 4.15.0-124.127 4.15.0-125.128 4.15.0-134.138 4.15.0-158.166 4.15.0-31.33 4.15.0-45.48 4.15.0-135.139
Will Not Fix
Ubuntu 18.04 AWS
4.15.0-1021.21 show all hide all
4.15.0-1047.49 4.15.0-1080.84 4.15.0-1052.54 4.15.0-1063.67 4.15.0-1083.87 4.15.0-1027.27 4.15.0-1079.83 4.15.0-1031.33 4.15.0-1102.109 4.15.0-1032.34 4.15.0-1054.56 4.15.0-1076.80 4.15.0-1118.125 4.15.0-1023.23 4.15.0-1093.99 4.15.0-1095.102 4.15.0-1111.118 4.15.0-1112.119 4.15.0-1077.81 4.15.0-1092.98 4.15.0-1098.105 4.15.0-1099.106 4.15.0-1029.30 4.15.0-1050.52 4.15.0-1060.62 4.15.0-1067.71 4.15.0-1097.104 4.15.0-1103.110 4.15.0-1110.117 4.15.0-1091.96 4.15.0-1114.121 4.15.0-1056.58 4.15.0-1094.101 4.15.0-1096.103 4.15.0-1109.116 4.15.0-1073.77 4.15.0-1035.37 4.15.0-1057.59 4.15.0-1058.60 4.15.0-1065.69 4.15.0-1034.36 4.15.0-1037.39 4.15.0-1044.46 4.15.0-1048.50 4.15.0-1087.92 4.15.0-1090.95 4.15.0-1101.108 4.15.0-1115.122 4.15.0-1033.35 4.15.0-1039.41 4.15.0-1041.43 4.15.0-1043.45 4.15.0-1051.53 4.15.0-1066.70 4.15.0-1082.86 4.15.0-1086.91 4.15.0-1088.93 4.15.0-1116.123 4.15.0-1040.42 4.15.0-1045.47 4.15.0-1106.113 4.15.0-1119.127
Will Not Fix
Ubuntu 16.04 HWE
4.15.0-42.45~16.04.1 show all hide all
4.15.0-65.74~16.04.1 4.15.0-64.73~16.04.1 4.15.0-24.26~16.04.1 4.15.0-34.37~16.04.1 4.15.0-107.108~16.04.1 4.15.0-76.86~16.04.1 4.15.0-112.113~16.04.1 4.15.0-47.50~16.04.1 4.15.0-118.119~16.04.1 4.15.0-39.42~16.04.1 4.15.0-46.49~16.04.1 4.15.0-58.64~16.04.1 4.15.0-72.81~16.04.1 4.15.0-69.78~16.04.1 4.15.0-142.146~16.04.1 4.15.0-33.36~16.04.1 4.15.0-45.48~16.04.1 4.15.0-74.83~16.04.1 4.15.0-30.32~16.04.1 4.15.0-60.67~16.04.1 4.15.0-36.39~16.04.1 4.15.0-101.102~16.04.1 4.15.0-137.141~16.04.1 4.15.0-99.100~16.04.1 4.15.0-120.122~16.04.1 4.15.0-126.129~16.04.1 4.15.0-96.97~16.04.1 4.15.0-122.124~16.04.1 4.15.0-123.126~16.04.1 4.15.0-133.137~16.04.1 4.15.0-50.54~16.04.1 4.15.0-52.56~16.04.1 4.15.0-55.60~16.04.2 4.15.0-66.75~16.04.1 4.15.0-88.88~16.04.1 4.15.0-91.92~16.04.1 4.15.0-115.116~16.04.1 4.15.0-117.118~16.04.1 4.15.0-129.132~16.04.1 4.15.0-51.55~16.04.1 4.15.0-54.58~16.04.1 4.15.0-125.128~16.04.1 4.15.0-128.131~16.04.1 4.15.0-29.31~16.04.1 4.15.0-35.38~16.04.1 4.15.0-38.41~16.04.1 4.15.0-48.51~16.04.1 4.15.0-59.66~16.04.1 4.15.0-62.69~16.04.1 4.15.0-106.107~16.04.1 4.15.0-136.140~16.04.1 4.15.0-70.79~16.04.1 4.15.0-132.136~16.04.1 4.15.0-140.144~16.04.1 4.15.0-32.35~16.04.1 4.15.0-43.46~16.04.1 4.15.0-139.143~16.04.1
Will Not Fix
Ubuntu 16.04 AWS HWE
4.15.0-1080.84~16.04.1 show all hide all
4.15.0-1051.53~16.04.1 4.15.0-1094.101~16.04.1 4.15.0-1082.86~16.04.1 4.15.0-1050.52~16.04.1 4.15.0-1066.70~16.04.1 4.15.0-1074.78~16.04.1 4.15.0-1083.87~16.04.1 4.15.0-1093.99~16.04.1 4.15.0-1095.102~16.04.1 4.15.0-1088.93~16.04.1 4.15.0-1039.41~16.04.1 4.15.0-1054.56~16.04.1 4.15.0-1060.62~16.04.1 4.15.0-1098.105~16.04.1 4.15.0-1067.71~16.04.1 4.15.0-1063.67~16.04.1 4.15.0-1033.35~16.04.1 4.15.0-1041.43~16.04.1 4.15.0-1058.60~16.04.1 4.15.0-1091.96~16.04.1 4.15.0-1096.103~16.04.1 4.15.0-1056.58~16.04.1 4.15.0-1032.34~16.04.1 4.15.0-1040.42~16.04.1 4.15.0-1065.69~16.04.1 4.15.0-1097.104~16.04.1 4.15.0-1030.31~16.04.1 4.15.0-1036.38~16.04.1 4.15.0-1044.46~16.04.1 4.15.0-1048.50~16.04.1 4.15.0-1090.95~16.04.1 4.15.0-1047.49~16.04.1 4.15.0-1085.90~16.04.1 4.15.0-1031.33~16.04.1 4.15.0-1035.37~16.04.1 4.15.0-1043.45~16.04.1 4.15.0-1045.47~16.04.1 4.15.0-1057.59~16.04.1 4.15.0-1073.77~16.04.1 4.15.0-1079.83~16.04.1 4.15.0-1099.106~16.04.1 4.15.0-1052.54~16.04.1
Will Not Fix
Debian 9
4.9.210-1 show all hide all
4.9.82-1+deb9u2 4.9.168-1+deb9u2 4.9.107-1 4.9.110-3+deb9u3 4.9.189-3+deb9u1 4.9.240-1 4.9.210-1+deb9u1 4.9.30-2+deb9u1 4.9.168-1+deb9u5 4.9.168-1+deb9u4 4.9.110-3+deb9u2 4.9.168-1+deb9u3 4.9.88-1 4.9.110-3+deb9u1 4.9.290-1 4.9.88-1+deb9u1 4.9.246-1 4.9.51-1 4.9.110-1 4.9.30-2+deb9u5 4.9.258-1 4.9.272-2 4.9.30-2+deb9u4 4.9.65-1 4.9.80-1 4.9.189-3+deb9u2 4.9.65-3+deb9u1 4.9.130-1 4.9.228-1 4.9.30-2+deb9u3 4.9.110-2 4.9.110-3+deb9u4 4.9.110-3 4.9.130-2 4.9.144-2 4.9.144-3.1 4.9.144-3 4.9.189-3 4.9.240-2 4.9.246-2 4.9.30-2+deb9u2 4.9.30-2 4.9.65-3+deb9u2 4.9.65-3 4.9.80-2 4.9.82-1+deb9u3 4.9.168-1 4.9.110-3+deb9u5 4.9.110-3+deb9u6 4.9.135-1 4.9.272-1
Will Not Fix
Debian 8 backports
4.9.189-3~deb8u1 show all hide all
4.9.110-1~deb8u1 4.9.144-3.1~deb8u1 4.9.110-3+deb9u4~deb8u1 4.9.110-3+deb9u1~deb8u1 4.9.110-3+deb9u5~deb8u1 4.9.168-1+deb9u3~deb8u1 4.9.168-1+deb9u4~deb8u1 4.9.168-1+deb9u5~deb8u1 4.9.189-3+deb9u1~deb8u1 4.9.189-3+deb9u2~deb8u1 4.9.210-1+deb9u1~deb8u1 4.9.210-1~deb8u1 4.9.30-2+deb9u2~bpo8+1 4.9.30-2+deb9u5~bpo8+1 4.9.30-2~bpo8+1 4.9.51-1~bpo8+1 4.9.65-3+deb9u1~bpo8+1 4.9.65-3+deb9u2~bpo8+1 4.9.65-3~bpo8+1 4.9.82-1+deb9u3~bpo8+1 4.9.88-1+deb9u1~bpo8+1 4.9.88-1~bpo8+1 4.9.110-3+deb9u2~deb8u1
Will Not Fix
Amazon Linux 1
4.14.152-98.182.amzn1 show all hide all
4.14.106-79.86.amzn1 4.14.133-88.105.amzn1 4.14.121-85.96.amzn1 4.14.133-88.112.amzn1 4.14.146-93.123.amzn1 4.14.165-102.185.amzn1 4.14.200-116.320.amzn1 4.14.77-69.57.amzn1 4.14.104-78.84.amzn1 4.14.171-105.231.amzn1 4.14.214-118.339.amzn1 4.14.232-123.381.amzn1 4.14.248-129.473.amzn1 4.14.123-86.109.amzn1 4.14.173-106.229.amzn1 4.14.177-107.254.amzn1 4.14.186-110.268.amzn1 4.14.209-117.337.amzn1 4.14.219-119.340.amzn1 4.14.238-125.422.amzn1 4.14.101-75.76.amzn1 4.14.114-82.97.amzn1 4.14.114-83.126.amzn1 4.14.154-99.181.amzn1 4.14.181-108.257.amzn1 4.14.238-125.421.amzn1 4.14.203-116.332.amzn1 4.14.62-65.117.amzn1 4.14.94-73.73.amzn1 4.14.143-91.122.amzn1 4.14.225-121.357.amzn1 4.14.72-68.55.amzn1 4.14.109-80.92.amzn1 4.14.128-87.105.amzn1 4.14.138-89.102.amzn1 4.14.165-103.209.amzn1 4.14.193-113.317.amzn1 4.14.225-121.362.amzn1 4.14.252-131.483.amzn1 4.14.70-67.55.amzn1 4.14.77-70.82.amzn1 4.14.97-74.72.amzn1
Will Not Fix
Amazon Linux 2
Ready For Release
Ubuntu 18.04 HWE Focal
Ready For Release
Ubuntu 18.04 GCP
4.15.0-1010.10 show all hide all
4.15.0-1044.70 4.15.0-1015.15 4.15.0-1025.26 4.15.0-1042.45 4.15.0-1018.19 4.15.0-1024.25 4.15.0-1029.31 4.15.0-1026.27 4.15.0-1009.9 4.15.0-1017.18 4.15.0-1021.22 4.15.0-1028.29 4.15.0-1032.34 4.15.0-1008.8 4.15.0-1034.36 4.15.0-1036.38 4.15.0-1006.6 4.15.0-1014.14 4.15.0-1030.32 4.15.0-1042.44 4.15.0-1044.46 4.15.0-1040.42 4.15.0-1027.28 4.15.0-1037.39 4.15.0-1033.35 4.15.0-1019.20
Will Not Fix
Ubuntu 16.04 GCP
4.15.0-1032.34~16.04.1 show all hide all
4.15.0-1095.108~16.04.1 4.15.0-1024.25~16.04.2 4.15.0-1040.42~16.04.1 4.15.0-1081.92~16.04.1 4.15.0-1071.81~16.04.1 4.15.0-1021.22~16.04.1 4.15.0-1088.101~16.04.1 4.15.0-1092.105~16.04.1 4.15.0-1019.20~16.04.1 4.15.0-1084.95~16.04.1 4.15.0-1086.98~16.04.1 4.15.0-1036.38~16.04.1 4.15.0-1080.90~16.04.1 4.15.0-1017.18~16.04.1 4.15.0-1018.19~16.04.2 4.15.0-1029.31~16.04.1 4.15.0-1028.29~16.04.1 4.15.0-1033.35~16.04.1 4.15.0-1094.107~16.04.1 4.15.0-1093.106~16.04.1 4.15.0-1078.88~16.04.1 4.15.0-1014.14~16.04.1 4.15.0-1083.94~16.04.1 4.15.0-1026.27~16.04.1 4.15.0-1091.104~16.04.1 4.15.0-1096.109~16.04.1 4.15.0-1097.110~16.04.1 4.15.0-1025.26~16.04.1 4.15.0-1034.36~16.04.1 4.15.0-1027.28~16.04.1 4.15.0-1015.15~16.04.1 4.15.0-1037.39~16.04.1 4.15.0-1077.87~16.04.1 4.15.0-1087.100~16.04.1 4.15.0-1090.103~16.04.1 4.15.0-1098.111~16.04.1
Will Not Fix
Debian 10
4.19.118-2+deb10u1 show all hide all
4.19.67-2+deb10u1 4.19.67-2 4.19.98-1 4.19.37-5 4.19.37-5+deb10u2 4.19.67-2+deb10u2 4.19.98-1+deb10u1 4.19.118-2 4.19.160-2 4.19.132-1 4.19.146-1 4.19.152-1 4.19.171-2 4.19.181-1 4.19.37-5+deb10u1 4.19.194-1 4.19.194-2 4.19.194-3 4.19.208-1
Released
Proofpoint
Ready For Release
Ubuntu 18.04 Azure
4.15.0-1037.39 show all hide all
4.15.0-1014.14 4.15.0-1031.32 4.15.0-1025.26 4.15.0-1012.12 4.15.0-1021.21 4.15.0-1022.23 4.15.0-1009.9 4.15.0-1018.18 4.15.0-1028.29 4.15.0-1030.31 4.15.0-1032.33 4.15.0-1035.36 4.15.0-1013.13 4.15.0-1019.19 4.15.0-1023.24 4.15.0-1036.38
Will Not Fix
Ubuntu 16.04 Azure
4.15.0-1018.18~16.04.1 show all hide all
4.15.0-1028.29~16.04.1 4.15.0-1030.31~16.04.1 4.15.0-1111.123~16.04.1 4.15.0-1047.51 4.15.0-1040.44 4.15.0-1032.33~16.04.1 4.15.0-1039.43 4.15.0-1042.46 4.15.0-1050.55 4.15.0-1052.57 4.15.0-1057.62 4.15.0-1069.74 4.15.0-1102.113~16.04.1 4.15.0-1041.45 4.15.0-1060.65 4.15.0-1036.38~16.04.1 4.15.0-1051.56 4.15.0-1025.26~16.04.1 4.15.0-1061.66 4.15.0-1066.71 4.15.0-1056.61 4.15.0-1108.120~16.04.1 4.15.0-1113.126~16.04.1 4.15.0-1049.54 4.15.0-1019.19~16.04.1 4.15.0-1037.39~16.04.1 4.15.0-1092.102~16.04.1 4.15.0-1093.103~16.04.1 4.15.0-1071.76 4.15.0-1082.92~16.04.1 4.15.0-1103.114~16.04.1 4.15.0-1110.122~16.04.1 4.15.0-1014.14~16.04.1 4.15.0-1022.22~16.04.1 4.15.0-1067.72 4.15.0-1077.82 4.15.0-1109.121~16.04.1 4.15.0-1035.36~16.04.1 4.15.0-1055.60 4.15.0-1021.21~16.04.1 4.15.0-1031.32~16.04.1 4.15.0-1045.49 4.15.0-1059.64 4.15.0-1063.68 4.15.0-1075.80 4.15.0-1089.99~16.04.1 4.15.0-1098.109~16.04.1 4.15.0-1100.111~16.04.1 4.15.0-1013.13~16.04.2 4.15.0-1046.50 4.15.0-1064.69 4.15.0-1083.93~16.04.1 4.15.0-1091.101~16.04.1 4.15.0-1095.105~16.04.1 4.15.0-1096.106~16.04.1 4.15.0-1106.118~16.04.1 4.15.0-1112.124~16.04.1 4.15.0-1023.24~16.04.1
Will Not Fix
Debian 10 cloud
4.19.118-2+deb10u1 show all hide all
4.19.160-2 4.19.118-2 4.19.132-1 4.19.146-1 4.19.152-1 4.19.67-2+deb10u2 4.19.98-1+deb10u1 4.19.171-2 4.19.181-1 4.19.194-1 4.19.194-2 4.19.194-3 4.19.208-1
Released
Debian 9 backports
4.19.67-2+deb10u2~bpo9+1 show all hide all
4.19.146-1~deb9u1 4.19.152-1~deb9u1 4.19.118-2+deb10u1~bpo9+1 4.19.98-1~bpo9+1 4.19.132-1~deb9u2 4.19.160-2~deb9u1 4.19.171-2~deb9u1 4.19.181-1~deb9u1 4.19.194-1~deb9u1 4.19.194-3~deb9u1 4.19.208-1~deb9u1
Released
Ubuntu 20.04
Ready For Release
Ubuntu 18.04 AWS Focal
Ready For Release
Ubuntu 18.04 Azure Focal
Ready For Release
Ubuntu 20.04 AWS
Ready For Release
Ubuntu 20.04 Azure
Ready For Release
Ubuntu 16.04 HWE ESM
Ready For Release
Ubuntu 16.04 AWS ESM
Will Not Fix
Ubuntu 16.04 GCP ESM
Ready For Release
Ubuntu 16.04 AWS HWE ESM
Ready For Release
Ubuntu 16.04 Azure ESM
Ready For Release
Debian 11
5.10.84-1 show all hide all
5.10.70-1 5.10.46-5 5.10.46-4
Will Not Fix
Amazon Linux 2 5.4
5.4.105-48.177.amzn2 show all hide all
5.4.110-54.182.amzn2 5.4.110-54.189.amzn2 5.4.117-58.216.amzn2 5.4.149-73.259.amzn2 5.4.156-83.273.amzn2 5.4.162-86.275.amzn2
Will Not Fix
Amazon Linux 2 5.10
5.10.75-79.358.amzn2 show all hide all
5.10.82-83.359.amzn2
Will Not Fix