PT-2024-11162 · Linux+2 · Linux Kernel+2

Vitaly Kuznetsov

·

Published

2021-05-07

·

Updated

2026-03-27

·

CVE-2021-47110

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to the Linux kernel, where the kvmclock is not properly disabled on all CPUs during shutdown, which can lead to memory corruption when restoring from hibernate. Currently, kvmclock is disabled from the machine shutdown() hook, but this only happens for the boot CPU. To prevent memory corruption, it is necessary to disable kvmclock on all CPUs. Writing '0' to kvmclock MSR does not clear the memory location but prevents the hypervisor from updating it, allowing the clock to remain usable for a short period.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2025-13691
CVE-2021-47110
OESA-2024-1617
OESA-2024-1618
OPENSUSE-SU-2024_1489-1
SUSE-SU-2024:1454-1
SUSE-SU-2024:1465-1
SUSE-SU-2024:1489-1
SUSE-SU-2024:1643-1
SUSE-SU-2024:1646-1
SUSE-SU-2024:1870-1
SUSE-SU-2026:1130-1

Affected Products

Astra Linux
Linux Kernel
Suse