5.3
CVE-2026-62434
- EPSS 0.33%
- Veröffentlicht 28.07.2026 12:33:08
- Zuletzt bearbeitet 28.07.2026 17:16:58
- CVE-Watchlists
- Unerledigt
PoD: Don't try to reclaim special pages
A guest started with Populated on Demand enabled (PoD) can attempt to reclaim pages which aren't regular guest RAM. This can cause corruption of memory management state in Xen.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerXen
≫
Produkt
Xen
Default Statusunknown
Version
consult Xen advisory XSA-507
Status
unknown
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.33% | 0.252 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| CISA-ADP | 5.3 | 3.9 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
https://xenbits.xenproject.org/xsa/advisory-507.html
http://xenbits.xen.org/xsa/advisory-507.html
http://www.openwall.com/lists/oss-security/2026/07/28/23