Xen

Xen

483 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.1%
  • Veröffentlicht 17.07.2025 13:59:46
  • Zuletzt bearbeitet 13.01.2026 22:16:10

When setting up interrupt remapping for legacy PCI(-X) devices, including PCI(-X) bridges, a lookup of the upstream bridge is required. This lookup, itself involving acquiring of a lock, is done in a context where acquiring that lock is unsafe. This...

  • EPSS 0.05%
  • Veröffentlicht 16.07.2025 09:15:23
  • Zuletzt bearbeitet 13.01.2026 22:13:34

Certain instructions need intercepting and emulating by Xen. In some cases Xen emulates the instruction by replaying it, using an executable stub. Some instructions may raise an exception, which is supposed to be handled gracefully. Certain replay...

  • EPSS 0.09%
  • Veröffentlicht 14.02.2025 21:15:15
  • Zuletzt bearbeitet 08.01.2026 14:44:12

For a brief summary of Xapi terminology, see: https://xapi-project.github.io/xen-api/overview.html#object-model-overview Xapi contains functionality to backup and restore metadata about Virtual Machines and Storage Repositories (SRs). The meta...

  • EPSS 0.03%
  • Veröffentlicht 19.12.2024 21:15:08
  • Zuletzt bearbeitet 09.01.2025 17:15:12

A cross-privilege Spectre v2 vulnerability allows attackers to bypass all deployed mitigations, including the recent Fine(IBT), and to leak arbitrary Linux kernel memory on Intel systems.

  • EPSS 0.17%
  • Veröffentlicht 19.12.2024 12:15:16
  • Zuletzt bearbeitet 20.05.2025 16:28:07

The hypervisor contains code to accelerate VGA memory accesses for HVM guests, when the (virtual) VGA is in "standard" mode. Locking involved there has an unusual discipline, leaving a lock acquired past the return from the function that acquired it...

  • EPSS 0.06%
  • Veröffentlicht 19.12.2024 12:15:16
  • Zuletzt bearbeitet 14.01.2026 20:41:34

PVH guests have their ACPI tables constructed by the toolstack. The construction involves building the tables in local memory, which are then copied into guest memory. While actually used parts of the local memory are filled in correctly, excess sp...

  • EPSS 0.05%
  • Veröffentlicht 25.09.2024 11:15:12
  • Zuletzt bearbeitet 05.01.2026 18:51:50

Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Reserved Memory Region Reporting, "RMRR") for Intel VT-d or Unity Mapping ranges for AMD-Vi. These are typically used for platform tasks such as legacy USB emul...

  • EPSS 0.05%
  • Veröffentlicht 25.09.2024 11:15:12
  • Zuletzt bearbeitet 05.01.2026 18:46:00

When multiple devices share resources and one of them is to be passed through to a guest, security of the entire system and of respective guests individually cannot really be guaranteed without knowing internals of any of the involved guests. Theref...

  • EPSS 0.37%
  • Veröffentlicht 25.09.2024 11:15:12
  • Zuletzt bearbeitet 14.01.2026 15:46:51

In x86's APIC (Advanced Programmable Interrupt Controller) architecture, error conditions are reported in a status register. Furthermore, the OS can opt to receive an interrupt when a new error occurs. It is possible to configure the error interrup...

  • EPSS 0.62%
  • Veröffentlicht 18.07.2024 14:15:04
  • Zuletzt bearbeitet 14.01.2026 16:31:30

An optional feature of PCI MSI called "Multiple Message" allows a device to use multiple consecutive interrupt vectors. Unlike for MSI-X, the setting up of these consecutive vectors needs to happen all in one go. In this handling an error path coul...