A flaw was found in the fix for CVE-2019-11135, in the Linux upstream kernel versions before 5.5 where, the way Intel CPUs handle speculative execution of instructions when a TSX Asynchronous Abort (TAA) error occurs. When a guest is running on a host CPU affected by the TAA flaw (TAA_NO=0), but is not affected by the MDS issue (MDS_NO=1), the guest was to clear the affected buffers by using a VERW instruction mechanism. But when the MDS_NO=1 bit was exported to the guests, the guests did not use the VERW mechanism to clear the affected buffers. This issue affects guests running on Cascade Lake CPUs and requires that host has 'TSX' enabled. Confidentiality of data is the highest threat associated with this vulnerability.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N)
- CVSS 3.0 Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade kernelUpgrade kernel-rt | Feb 5, 2020 | Feb 4, 2020 |
| Huawei Euleros 2_0_sp5 | — | Upgrade perfUpgrade kernel-headersUpgrade kernelUpgrade kernel-toolsUpgrade kernel-develUpgrade python-perfUpgrade kernel-tools-libs | Mar 24, 2021 | Jul 13, 2020 |
| Huawei Euleros 2_0_sp8 | — | Upgrade kernel-headersUpgrade kernel-tools-libsUpgrade bpftoolUpgrade kernelUpgrade perfUpgrade python-perfUpgrade python3-perfUpgrade kernel-develUpgrade kernel-sourceUpgrade kernel-tools | Feb 26, 2020 | Feb 25, 2020 |
| Oracle_linux | — | Upgrade kernel | Mar 19, 2020 | Nov 18, 2019 |
| Redhat Openshift | — | Upgrade redhat-coreos | Dec 29, 2020 | Jul 13, 2020 |
| Redhat_linux | — | Upgrade kernelUpgrade kernel-rtNo solution exists | Feb 5, 2020 | Feb 4, 2020 |
| Suse | — | Upgrade kernel-default-extraUpgrade kernel-docsUpgrade kernel-defaultUpgrade kernel-obs-build | Dec 18, 2019 | Dec 17, 2019 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jan 20, 2025 | Jul 13, 2020 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub