PublicDateAtUSN: 2020-02-24 18:00:00 UTC Candidate: CVE-2020-2732 CRD: 2020-02-24 18:00:00 UTC PublicDate: 2020-04-08 22:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-2732 https://www.spinics.net/lists/kvm/msg208259.html https://www.openwall.com/lists/oss-security/2020/02/25/4 https://ubuntu.com/security/notices/USN-4300-1 https://ubuntu.com/security/notices/USN-4301-1 https://ubuntu.com/security/notices/USN-4302-1 https://ubuntu.com/security/notices/USN-4303-1 https://ubuntu.com/security/notices/USN-4303-2 Description: A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 guest when nested virtualisation is enabled. Under some circumstances, an L2 guest may trick the L0 guest into accessing sensitive L1 resources that should be inaccessible to the L2 guest. Ubuntu-Description: Paulo Bonzini discovered that the KVM hypervisor implementation in the Linux kernel could improperly let a nested (level 2) guest access the resources of a parent (level 1) guest in certain situations. An attacker could use this to expose sensitive information. Notes: sbeattie> only systems running Intel processors are affected. Mitigation: Bugs: https://bugzilla.redhat.com/show_bug.cgi?id=1805135 Priority: medium Discovered-by: Paulo Bonzini Assigned-to: CVSS: nvd: CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N [6.8 MEDIUM] Patches_linux: break-fix: 8a76d7f25f8f24fc5a328c8e15e4a7313cf141b9 07721feee46b4b248402133228235318199b05ec break-fix: 55d2375e58a61be072431dd3d3c8a320f4a4a01b e71237d3ff1abf9f3388337cfebf53b96df2020d break-fix: fb6d4d340e0532032c808a9933eaaa7b8de435ab 35a571346a94fb93b5b3b6a599675ef3384bc75c upstream_linux: released (5.6~rc4) precise/esm_linux: ignored (was needed ESM criteria) trusty_linux: ignored (out of standard support) trusty/esm_linux: ignored (was needed ESM criteria) xenial_linux: released (4.4.0-176.206) esm-infra/xenial_linux: released (4.4.0-176.206) bionic_linux: released (4.15.0-91.92) eoan_linux: released (5.3.0-42.34) focal_linux: not-affected (5.4.0-18.22) devel_linux: not-affected (5.4.0-26.30) Patches_linux-hwe: upstream_linux-hwe: released (5.6~rc4) precise/esm_linux-hwe: DNE trusty_linux-hwe: DNE trusty/esm_linux-hwe: DNE xenial_linux-hwe: released (4.15.0-91.92~16.04.1) esm-infra/xenial_linux-hwe: released (4.15.0-91.92~16.04.1) bionic_linux-hwe: released (5.3.0-42.34~18.04.1) eoan_linux-hwe: DNE focal_linux-hwe: DNE devel_linux-hwe: DNE Patches_linux-hwe-edge: upstream_linux-hwe-edge: released (5.6~rc4) precise/esm_linux-hwe-edge: DNE trusty_linux-hwe-edge: DNE trusty/esm_linux-hwe-edge: DNE xenial_linux-hwe-edge: ignored (was needs-triage now end-of-life) esm-infra/xenial_linux-hwe-edge: ignored (was needs-triage now end-of-life) bionic_linux-hwe-edge: ignored (was needs-triage now end-of-life) eoan_linux-hwe-edge: DNE focal_linux-hwe-edge: DNE devel_linux-hwe-edge: DNE Patches_linux-lts-xenial: upstream_linux-lts-xenial: released (5.6~rc4) precise/esm_linux-lts-xenial: DNE trusty_linux-lts-xenial: ignored (out of standard support) trusty/esm_linux-lts-xenial: released (4.4.0-176.206~14.04.1) xenial_linux-lts-xenial: DNE bionic_linux-lts-xenial: DNE eoan_linux-lts-xenial: DNE focal_linux-lts-xenial: DNE devel_linux-lts-xenial: DNE Patches_linux-lts-trusty: upstream_linux-lts-trusty: released (5.6~rc4) precise/esm_linux-lts-trusty: ignored (was needed ESM criteria) trusty_linux-lts-trusty: DNE trusty/esm_linux-lts-trusty: DNE xenial_linux-lts-trusty: DNE bionic_linux-lts-trusty: DNE eoan_linux-lts-trusty: DNE focal_linux-lts-trusty: DNE devel_linux-lts-trusty: DNE Patches_linux-oem: upstream_linux-oem: released (5.6~rc4) precise/esm_linux-oem: DNE trusty_linux-oem: DNE trusty/esm_linux-oem: DNE xenial_linux-oem: ignored (was needs-triage now end-of-life) bionic_linux-oem: released (4.15.0-1076.86) eoan_linux-oem: released (4.15.0-1076.86) focal_linux-oem: DNE devel_linux-oem: DNE Patches_linux-oem-osp1: upstream_linux-oem-osp1: released (5.6~rc4) precise/esm_linux-oem-osp1: DNE trusty_linux-oem-osp1: DNE trusty/esm_linux-oem-osp1: DNE xenial_linux-oem-osp1: DNE bionic_linux-oem-osp1: released (5.0.0-1043.48) eoan_linux-oem-osp1: released (5.0.0-1043.48) focal_linux-oem-osp1: DNE devel_linux-oem-osp1: DNE Patches_linux-kvm: upstream_linux-kvm: released (5.6~rc4) precise/esm_linux-kvm: DNE trusty_linux-kvm: DNE trusty/esm_linux-kvm: DNE xenial_linux-kvm: released (4.4.0-1068.75) esm-infra/xenial_linux-kvm: released (4.4.0-1068.75) bionic_linux-kvm: released (4.15.0-1056.57) eoan_linux-kvm: released (5.3.0-1012.13) focal_linux-kvm: not-affected (5.4.0-1004.4) devel_linux-kvm: not-affected (5.4.0-1009.9) Patches_linux-aws: upstream_linux-aws: released (5.6~rc4) precise/esm_linux-aws: DNE trusty_linux-aws: ignored (out of standard support) trusty/esm_linux-aws: released (4.4.0-1064.68) xenial_linux-aws: released (4.4.0-1104.115) esm-infra/xenial_linux-aws: released (4.4.0-1104.115) bionic_linux-aws: released (4.15.0-1063.67) eoan_linux-aws: released (5.3.0-1013.14) focal_linux-aws: not-affected (5.4.0-1005.5) devel_linux-aws: not-affected (5.4.0-1009.9) Patches_linux-aws-5.0: upstream_linux-aws-5.0: released (5.6~rc4) precise/esm_linux-aws-5.0: DNE trusty_linux-aws-5.0: DNE trusty/esm_linux-aws-5.0: DNE xenial_linux-aws-5.0: DNE bionic_linux-aws-5.0: released (5.0.0-1027.30) eoan_linux-aws-5.0: DNE focal_linux-aws-5.0: DNE devel_linux-aws-5.0: DNE Patches_linux-aws-hwe: upstream_linux-aws-hwe: released (5.6~rc4) precise/esm_linux-aws-hwe: DNE trusty_linux-aws-hwe: DNE trusty/esm_linux-aws-hwe: DNE xenial_linux-aws-hwe: released (4.15.0-1063.67~16.04.1) esm-infra/xenial_linux-aws-hwe: released (4.15.0-1063.67~16.04.1) bionic_linux-aws-hwe: DNE eoan_linux-aws-hwe: DNE focal_linux-aws-hwe: DNE devel_linux-aws-hwe: DNE Patches_linux-azure: upstream_linux-azure: released (5.6~rc4) precise/esm_linux-azure: DNE trusty_linux-azure: ignored (out of standard support) trusty/esm_linux-azure: released (4.15.0-1074.79~14.04.1) xenial_linux-azure: released (4.15.0-1075.80) esm-infra/xenial_linux-azure: released (4.15.0-1075.80) bionic_linux-azure: released (5.0.0-1035.37) eoan_linux-azure: released (5.3.0-1016.17) focal_linux-azure: not-affected (5.4.0-1006.6) devel_linux-azure: not-affected (5.4.0-1010.10) Patches_linux-azure-5.3: upstream_linux-azure-5.3: released (5.6~rc4) precise/esm_linux-azure-5.3: DNE trusty_linux-azure-5.3: DNE trusty/esm_linux-azure-5.3: DNE xenial_linux-azure-5.3: DNE bionic_linux-azure-5.3: released (5.3.0-1016.17~18.04.1) eoan_linux-azure-5.3: DNE focal_linux-azure-5.3: DNE devel_linux-azure-5.3: DNE Patches_linux-azure-edge: upstream_linux-azure-edge: released (5.6~rc4) precise/esm_linux-azure-edge: DNE trusty_linux-azure-edge: DNE trusty/esm_linux-azure-edge: DNE xenial_linux-azure-edge: ignored (was needs-triage now end-of-life) bionic_linux-azure-edge: ignored (was needs-triage now end-of-life) eoan_linux-azure-edge: DNE focal_linux-azure-edge: DNE devel_linux-azure-edge: DNE Patches_linux-gcp: upstream_linux-gcp: released (5.6~rc4) precise/esm_linux-gcp: DNE trusty_linux-gcp: DNE trusty/esm_linux-gcp: DNE xenial_linux-gcp: released (4.15.0-1058.62) esm-infra/xenial_linux-gcp: released (4.15.0-1058.62) bionic_linux-gcp: released (5.0.0-1033.34) eoan_linux-gcp: released (5.3.0-1014.15) focal_linux-gcp: not-affected (5.4.0-1005.5) devel_linux-gcp: not-affected (5.4.0-1009.9) Patches_linux-gcp-5.3: upstream_linux-gcp-5.3: released (5.6~rc4) precise/esm_linux-gcp-5.3: DNE trusty_linux-gcp-5.3: DNE trusty/esm_linux-gcp-5.3: DNE xenial_linux-gcp-5.3: DNE bionic_linux-gcp-5.3: released (5.3.0-1014.15~18.04.1) eoan_linux-gcp-5.3: DNE focal_linux-gcp-5.3: DNE devel_linux-gcp-5.3: DNE Patches_linux-gcp-edge: upstream_linux-gcp-edge: released (5.6~rc4) precise/esm_linux-gcp-edge: DNE trusty_linux-gcp-edge: DNE trusty/esm_linux-gcp-edge: DNE xenial_linux-gcp-edge: DNE bionic_linux-gcp-edge: ignored (was needs-triage now end-of-life) eoan_linux-gcp-edge: DNE focal_linux-gcp-edge: DNE devel_linux-gcp-edge: DNE Patches_linux-gke-4.15: upstream_linux-gke-4.15: released (5.6~rc4) precise/esm_linux-gke-4.15: DNE trusty_linux-gke-4.15: DNE trusty/esm_linux-gke-4.15: DNE xenial_linux-gke-4.15: DNE bionic_linux-gke-4.15: released (4.15.0-1055.58) eoan_linux-gke-4.15: DNE focal_linux-gke-4.15: DNE devel_linux-gke-4.15: DNE Patches_linux-gke-5.0: upstream_linux-gke-5.0: released (5.6~rc4) precise/esm_linux-gke-5.0: DNE trusty_linux-gke-5.0: DNE trusty/esm_linux-gke-5.0: DNE xenial_linux-gke-5.0: DNE bionic_linux-gke-5.0: released (5.0.0-1032.33) eoan_linux-gke-5.0: DNE focal_linux-gke-5.0: DNE devel_linux-gke-5.0: DNE Patches_linux-oracle: upstream_linux-oracle: released (5.6~rc4) precise/esm_linux-oracle: DNE trusty_linux-oracle: DNE trusty/esm_linux-oracle: DNE xenial_linux-oracle: released (4.15.0-1035.38~16.04.1) esm-infra/xenial_linux-oracle: released (4.15.0-1035.38~16.04.1) bionic_linux-oracle: released (4.15.0-1035.39) eoan_linux-oracle: released (5.3.0-1011.12) focal_linux-oracle: not-affected (5.4.0-1005.5) devel_linux-oracle: not-affected (5.4.0-1009.9) Patches_linux-oracle-5.0: upstream_linux-oracle-5.0: released (5.6~rc4) precise/esm_linux-oracle-5.0: DNE trusty_linux-oracle-5.0: DNE trusty/esm_linux-oracle-5.0: DNE xenial_linux-oracle-5.0: DNE bionic_linux-oracle-5.0: released (5.0.0-1013.18) eoan_linux-oracle-5.0: DNE focal_linux-oracle-5.0: DNE devel_linux-oracle-5.0: DNE Patches_linux-raspi2: upstream_linux-raspi2: not-affected (Intel only) precise/esm_linux-raspi2: DNE trusty_linux-raspi2: DNE trusty/esm_linux-raspi2: DNE xenial_linux-raspi2: not-affected (Intel only) bionic_linux-raspi2: not-affected (Intel only) eoan_linux-raspi2: not-affected (Intel only) focal_linux-raspi2: ignored (was pending \[5.4.0-1006.6\] now end-of-life) devel_linux-raspi2: ignored (was pending \[5.4.0-1006.6\] now end-of-life) Patches_linux-snapdragon: upstream_linux-snapdragon: not-affected (Intel only) precise/esm_linux-snapdragon: DNE trusty_linux-snapdragon: DNE trusty/esm_linux-snapdragon: DNE xenial_linux-snapdragon: not-affected (Intel only) bionic_linux-snapdragon: not-affected (Intel only) eoan_linux-snapdragon: DNE focal_linux-snapdragon: DNE devel_linux-snapdragon: DNE Patches_linux-raspi2-5.3: upstream_linux-raspi2-5.3: not-affected (Intel only) precise/esm_linux-raspi2-5.3: DNE trusty_linux-raspi2-5.3: DNE trusty/esm_linux-raspi2-5.3: DNE xenial_linux-raspi2-5.3: DNE bionic_linux-raspi2-5.3: not-affected (Intel only) eoan_linux-raspi2-5.3: DNE focal_linux-raspi2-5.3: DNE devel_linux-raspi2-5.3: DNE Patches_linux-oem-5.6: upstream_linux-oem-5.6: released (5.6~rc4) precise/esm_linux-oem-5.6: DNE trusty_linux-oem-5.6: DNE trusty/esm_linux-oem-5.6: DNE xenial_linux-oem-5.6: DNE bionic_linux-oem-5.6: DNE eoan_linux-oem-5.6: DNE focal_linux-oem-5.6: not-affected (5.6.0-1007.7) devel_linux-oem-5.6: not-affected (5.6.0-1007.7) Patches_linux-gke-5.3: upstream_linux-gke-5.3: released (5.6~rc4) precise/esm_linux-gke-5.3: DNE trusty_linux-gke-5.3: DNE trusty/esm_linux-gke-5.3: DNE xenial_linux-gke-5.3: DNE bionic_linux-gke-5.3: released (5.3.0-1014.15~18.04.1) eoan_linux-gke-5.3: DNE focal_linux-gke-5.3: DNE devel_linux-gke-5.3: DNE Patches_linux-oracle-5.3: upstream_linux-oracle-5.3: released (5.6~rc4) precise/esm_linux-oracle-5.3: DNE trusty_linux-oracle-5.3: DNE trusty/esm_linux-oracle-5.3: DNE xenial_linux-oracle-5.3: DNE bionic_linux-oracle-5.3: not-affected (5.3.0-1011.12~18.04.1) eoan_linux-oracle-5.3: DNE focal_linux-oracle-5.3: DNE devel_linux-oracle-5.3: DNE