kernel CVE-2023-46813
Package
kernel-5.10
(bottlerocket)
Affected versions
< 1.17.0
Patched versions
1.17.0
kernel-5.15
(bottlerocket)
< 1.17.0
1.17.0
kernel-6.1
(bottlerocket)
< 1.17.0
1.17.0
A local privilege escalation bug was found in the Linux kernel’s SEV-ES MMIO emulation. Incorrect access checking in the #VC handler and instruction emulation of the SEV-ES emulation of MMIO accesses could lead to arbitrary write access to kernel memory (and thus privilege escalation). This depends on a race condition through which userspace can replace an instruction before the #VC handler reads it.