UBUNTU-CVE-2021-28711 Published: 5 Jan 2022Last Modified: 9 Sept 2026
Details: Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Xen offers the ability to run PV backends in regular unprivileged guests, typically referred to as "driver domains". Running PV backends in driver domains has one primary security advantage: if a driver domain gets compromised, it doesn't have the privileges to take over the system. However, a malicious driver domain could try to attack other guests via sending events at a high frequency leading to a Denial of Service in the guest due to trying to service interrupts for elongated amounts of time. There are three affected backends: * blkfront patch 1, CVE-2021-28711 * netfront patch 2, CVE-2021-28712 * hvc_xen (console) patch 3, CVE-2021-28713
linux-azure
linux-lts-xenial
linux
linux-aws
linux
linux-aws-hwe
linux-azure
linux-gcp
linux-hwe
linux-kvm
linux-oracle
linux-aws
linux-hwe-edge
linux-fips
linux-fips
linux
linux-aws
linux-aws-5.4
linux-azure-4.15
linux-azure-5.4
linux-dell300x
linux-gcp-4.15
linux-gcp-5.4
linux-gke-5.4
linux-gkeop-5.4
linux-hwe-5.4
linux-ibm-5.4
linux-kvm
linux-oracle
linux-oracle-5.4
linux-raspi-5.4
linux-raspi2
linux-snapdragon
linux-aws-5.0
linux-aws-5.3
linux-azure
linux-azure-5.3
linux-azure-edge
linux-gcp
linux-gcp-5.3
linux-gke-4.15
linux-hwe
linux-hwe-edge
linux-oem
linux-oracle-5.0
linux-oracle-5.3
linux-aws-fips
linux-azure-fips
linux-fips
linux-gcp-fips
linux-aws-fips
linux-azure-fips
linux-fips
linux-gcp-fips
linux
linux-aws
linux-aws-5.13
linux-azure
linux-azure-5.13
linux-bluefield
linux-gcp
linux-gcp-5.13
linux-gke
linux-gkeop
linux-hwe-5.13
linux-ibm
linux-kvm
linux-oracle
linux-oracle-5.13
linux-raspi
linux-aws-5.11
linux-aws-5.8
linux-azure-5.11
linux-azure-5.8
linux-gcp-5.11
linux-gcp-5.8
linux-hwe-5.11
linux-hwe-5.8
linux-intel-5.13
linux-oem-5.10
linux-oem-5.13
linux-oem-5.14
linux-oem-5.6
linux-oracle-5.11
linux-oracle-5.8
linux-raspi2
linux-riscv
linux-riscv-5.11
linux-riscv-5.8
linux-aws-fips
linux-azure-fips
linux-fips
linux-gcp-fips
linux-aws-fips
linux-azure-fips
linux-fips
linux-gcp-fips
linux-intel-iot-realtime
linux-realtime
linux-raspi-realtime
Package Name: linux-azure
Purl: pkg:deb/ubuntu/linux-azure?arch=source&distro=trusty%2Fesm
Affected ranges Type: ECOSYSTEM
Events:
Introduced - 0
Fixed - 4.15.0-1131.144~14.04.1
4.15.0-1023.24~14.04.1
4.15.0-1030.31~14.04.1
4.15.0-1031.32~14.04.1
4.15.0-1032.33~14.04.2
4.15.0-1035.36~14.04.2
4.15.0-1036.38~14.04.2
4.15.0-1037.39~14.04.2
4.15.0-1039.41~14.04.2
4.15.0-1040.44~14.04.1
4.15.0-1041.45~14.04.1
4.15.0-1042.46~14.04.1
4.15.0-1045.49~14.04.1
4.15.0-1046.50~14.04.1
4.15.0-1047.51~14.04.1
4.15.0-1049.54~14.04.1
4.15.0-1050.55~14.04.1
4.15.0-1051.56~14.04.1
4.15.0-1052.57~14.04.1
4.15.0-1055.60~14.04.1
4.15.0-1056.61~14.04.1
4.15.0-1057.62~14.04.1
4.15.0-1059.64~14.04.1
4.15.0-1060.65~14.04.1
4.15.0-1061.66~14.04.1
4.15.0-1063.68~14.04.1
4.15.0-1064.69~14.04.1
4.15.0-1066.71~14.04.1
4.15.0-1067.72~14.04.1
4.15.0-1069.74~14.04.1
4.15.0-1071.76~14.04.1
4.15.0-1074.79~14.04.1
4.15.0-1077.82~14.04.1
4.15.0-1082.92~14.04.1
4.15.0-1083.93~14.04.1
4.15.0-1089.99~14.04.1
4.15.0-1091.101~14.04.1
4.15.0-1092.102~14.04.1
4.15.0-1093.103~14.04.1
4.15.0-1095.105~14.04.1
4.15.0-1096.106~14.04.1
4.15.0-1098.109~14.04.1
4.15.0-1100.111~14.04.1
4.15.0-1102.113~14.04.1
4.15.0-1103.114~14.04.1
4.15.0-1106.118~14.04.1
4.15.0-1108.120~14.04.1
4.15.0-1109.121~14.04.1
4.15.0-1110.122~14.04.1
4.15.0-1111.123~14.04.1
4.15.0-1112.124~14.04.1
4.15.0-1113.126~14.04.1
4.15.0-1114.127~14.04.1
4.15.0-1115.128~14.04.1
4.15.0-1118.131~14.04.1
4.15.0-1121.134~14.04.1
4.15.0-1122.135~14.04.1
4.15.0-1123.136~14.04.1
4.15.0-1124.137~14.04.1
4.15.0-1125.138~14.04.1
4.15.0-1126.139~14.04.1
4.15.0-1127.140~14.04.1
4.15.0-1129.142~14.04.1
4.15.0-1130.143~14.04.1