Xen

Xen

509 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.25%
  • Veröffentlicht 28.07.2026 12:31:57
  • Zuletzt bearbeitet 28.07.2026 16:19:33

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] To manage the system, sysctl and platform operations are used by the control domain or a possible Xenstore domain. Some...

  • EPSS 0.12%
  • Veröffentlicht 28.07.2026 12:31:41
  • Zuletzt bearbeitet 28.07.2026 16:17:48

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] The directory and Rock Ridge / SUSP walk in libfsimage's iso9660 driver derives several lengths directly from attacker-c...

  • EPSS 0.21%
  • Veröffentlicht 28.07.2026 12:31:41
  • Zuletzt bearbeitet 28.07.2026 16:17:49

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] The directory and Rock Ridge / SUSP walk in libfsimage's iso9660 driver derives several lengths directly from attacker-c...

  • EPSS 0.21%
  • Veröffentlicht 28.07.2026 12:31:41
  • Zuletzt bearbeitet 28.07.2026 16:19:29

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] The directory and Rock Ridge / SUSP walk in libfsimage's iso9660 driver derives several lengths directly from attacker-c...

  • EPSS 0.21%
  • Veröffentlicht 28.07.2026 12:31:41
  • Zuletzt bearbeitet 28.07.2026 16:19:30

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] The directory and Rock Ridge / SUSP walk in libfsimage's iso9660 driver derives several lengths directly from attacker-c...

  • EPSS 0.21%
  • Veröffentlicht 28.07.2026 12:31:41
  • Zuletzt bearbeitet 28.07.2026 16:19:31

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] The directory and Rock Ridge / SUSP walk in libfsimage's iso9660 driver derives several lengths directly from attacker-c...

  • EPSS 0.48%
  • Veröffentlicht 28.07.2026 12:31:28
  • Zuletzt bearbeitet 28.07.2026 17:16:38

Xenstore, to have an up-to-date picture of the entire system, wants to know of domains appearing and disappearing. To make this more robust, a new XEN_DOMCTL_get_domain_state was introduced. The management of the bitmap underlying that operation is...

  • EPSS 0.47%
  • Veröffentlicht 28.07.2026 12:31:11
  • Zuletzt bearbeitet 28.07.2026 17:16:39

Addressing certain issues, in particular related to operations which may take excessively long and therefore would need preemption, has turned out overly costly. Since alternatives (HVM/PVH: HAP, PV: shim) are commonly available, the decision was to...

  • EPSS 0.35%
  • Veröffentlicht 18.06.2026 13:47:23
  • Zuletzt bearbeitet 22.06.2026 18:38:02

Some shadow paging errors paths will switch the page-tables without updating the currently running vCPU reference. This causes a mismatch between the loaded page-tables and the mapcache metadata which can lead to corruption of the mapcache.

  • EPSS 0.08%
  • Veröffentlicht 18.06.2026 13:47:13
  • Zuletzt bearbeitet 22.06.2026 18:38:02

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] To create and manage guests, domctl operations are used by the control domain, a possible Xenstore domain, or by a domai...