CVE-2019-17343
- EPSS 0.12%
- Published 08.10.2019 01:15:10
- Last modified 21.11.2024 04:32:07
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privileges by leveraging incorrect use of the HVM physmap concept for PV domains.
CVE-2019-17344
- EPSS 0.15%
- Published 08.10.2019 01:15:10
- Last modified 21.11.2024 04:32:07
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service by leveraging a long-running operation that exists to support restartability of PTE updates.
CVE-2019-17345
- EPSS 0.08%
- Published 08.10.2019 01:15:10
- Last modified 21.11.2024 04:32:07
An issue was discovered in Xen 4.8.x through 4.11.x allowing x86 PV guest OS users to cause a denial of service because mishandling of failed IOMMU operations causes a bug check during the cleanup of a crashed guest.
CVE-2019-17346
- EPSS 0.18%
- Published 08.10.2019 01:15:10
- Last modified 21.11.2024 04:32:08
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privileges because of an incompatibility between Process Context Identifiers (PCID) and TLB flushes.
CVE-2019-17347
- EPSS 0.14%
- Published 08.10.2019 01:15:10
- Last modified 21.11.2024 04:32:08
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privileges because a guest can manipulate its virtualised %cr4 in a way that is incompatible with Linux (and possibly other guest kernel...
CVE-2019-17348
- EPSS 0.21%
- Published 08.10.2019 01:15:10
- Last modified 21.11.2024 04:32:08
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service because of an incompatibility between Process Context Identifiers (PCID) and shadow-pagetable switching.
CVE-2019-17350
- EPSS 0.14%
- Published 08.10.2019 00:15:10
- Last modified 21.11.2024 04:32:08
An issue was discovered in Xen through 4.12.x allowing Arm domU attackers to cause a denial of service (infinite loop) involving a compare-and-exchange operation.
CVE-2019-17351
- EPSS 0.09%
- Published 08.10.2019 00:15:10
- Last modified 21.11.2024 04:32:08
An issue was discovered in drivers/xen/balloon.c in the Linux kernel before 5.2.3, as used in Xen through 4.12.x, allowing guest OS users to cause a denial of service because of unrestricted resource consumption during the mapping of guest memory, ak...
CVE-2018-19961
- EPSS 0.19%
- Published 08.12.2018 04:29:00
- Last modified 21.11.2024 03:58:53
An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because TLB flushes do not always occur after IOMMU mapping changes.
CVE-2018-19962
- EPSS 0.19%
- Published 08.12.2018 04:29:00
- Last modified 21.11.2024 03:58:53
An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because small IOMMU mappings are unsafely combined into larger ones.