PT-2022-9253 · Google · Fuchsia
Published
2022-01-18
·
Updated
2024-05-29
·
CVE-2021-22566
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Fuchsia kernel versions prior to commit 7d731b4e9599088ac3073956933559da7bca6a00
Description
An incorrect setting of UXN bits within
mmu flags to s1 pte attr leads to privileged executable pages being mapped as executable from an unprivileged context. This can be leveraged by an attacker to bypass executability restrictions of kernel-mode pages from user-mode. An incorrect setting of PXN bits within mmu flags to s1 pte attr leads to unprivileged executable pages being mapped as executable from a privileged context. This can be leveraged by an attacker to bypass executability restrictions of user-mode pages from kernel-mode. Typically, this allows a potential attacker to circumvent a mitigation, making exploitation of potential kernel-mode vulnerabilities easier.Recommendations
Update the kernel beyond commit 7d731b4e9599088ac3073956933559da7bca6a00 and rebuild.
Fix
Incorrect Permission
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Fuchsia