Public bug reported:

[Impact]

Initialize memory of request offers message to be sent to the host so
padding or uninitialized fields do not leak guest memory contents.

Patch:

https://git.kernel.org/pub/scm/linux/kernel/git/hyperv/linux.git/commit/?h=hyperv-
next

[Test case]

Testing the information leakage to the host is not viable, but since the
patch the vmbus layer that affects all the hyper-v drivers, a boot test
on Hyper-V and on Azure should be enough to validate the patch,
considering how small the change is.

[Potential regression]

The change is very restricted, but on an eventual regression it might
affect any of the hyperv guest drivers.

** Affects: linux-azure-cvm (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: linux-azure-cvm (Ubuntu Focal)
     Importance: Undecided
     Assignee: Marcelo Cerri (mhcerri)
         Status: In Progress

** Also affects: linux-azure-cvm (Ubuntu Focal)
   Importance: Undecided
       Status: New

** Changed in: linux-azure-cvm (Ubuntu Focal)
       Status: New => In Progress

** Changed in: linux-azure-cvm (Ubuntu Focal)
     Assignee: (unassigned) => Marcelo Cerri (mhcerri)

-- 
You received this bug notification because you are a member of Kernel
Packages, which is subscribed to linux-azure-cvm in Ubuntu.
https://bugs.launchpad.net/bugs/1956793

Title:
  linux-azure-cvm: Avoid leaking guest memory when communicating with
  the host

Status in linux-azure-cvm package in Ubuntu:
  New
Status in linux-azure-cvm source package in Focal:
  In Progress

Bug description:
  [Impact]

  Initialize memory of request offers message to be sent to the host so
  padding or uninitialized fields do not leak guest memory contents.

  Patch:

  
https://git.kernel.org/pub/scm/linux/kernel/git/hyperv/linux.git/commit/?h=hyperv-
  next

  [Test case]

  Testing the information leakage to the host is not viable, but since
  the patch the vmbus layer that affects all the hyper-v drivers, a boot
  test on Hyper-V and on Azure should be enough to validate the patch,
  considering how small the change is.

  [Potential regression]

  The change is very restricted, but on an eventual regression it might
  affect any of the hyperv guest drivers.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux-azure-cvm/+bug/1956793/+subscriptions


-- 
Mailing list: https://launchpad.net/~kernel-packages
Post to     : kernel-packages@lists.launchpad.net
Unsubscribe : https://launchpad.net/~kernel-packages
More help   : https://help.launchpad.net/ListHelp

Reply via email to