漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
NEMU contains an implementation flaw in its RISC-V Hypervisor CSR handling where henvcfg[7:4] (CBIE/CBCFE/CBZE-related fields) is incorrectly masked/updated based on menvcfg[7:4], so a machine-mode write to menvcfg can implicitly modify the hypervisor's environment configuration. This can lead to incorrect enforcement of virtualization configuration and may cause unexpected traps or denial of service when executing cache-block management instructions in virtualized contexts (V=1).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
NEMU 安全漏洞
Vulnerability Description
NEMU是XiangShan开源的一个用于教学的全系统模拟器。 NEMU存在安全漏洞,该漏洞源于RISC-V Hypervisor CSR处理存在实现缺陷,可能导致虚拟化配置执行错误,在虚拟化环境中执行缓存块管理指令时引发意外陷阱或拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A