Lack of bounds checking when copying iv_data from the VM guest memory into host memory can lead to a large buffer overflow. The size and location of this overflow gives the attacker extensive control and could potentially lead to remote code execution.
This flaw does not affect the versions of `dpdk` as shipped with Red Hat Enterprise Linux 7 and 8 or the versions embedded in Red Hat Virtualization or the Fast Datapath `openvswitch` package, as they do not enable generic crypto device library support. This causes the vulnerable code in vhost_crypto.c to not be included.
This flaw does not affect Red Hat Ceph Storage 3 and 4 as dpdk (embedded in ceph source rpm) is not built in the packages, therefore the vulnerable code is not available in the resulting RPM and the issue cannot be exploited.
Name: Ryan Hall
Created dpdk tracking bugs for this issue:
Affects: fedora-all [bug 1883275]
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):