Xen

Xen

479 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.07%
  • Veröffentlicht 12.09.2017 15:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

A grant unmapping issue was discovered in Xen through 4.9.x. When removing or replacing a grant mapping, the x86 PV specific path needs to make sure page table entries remain in sync with other accounting done. Although the identity of the page frame...

  • EPSS 0.29%
  • Veröffentlicht 24.08.2017 14:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The xen_biovec_phys_mergeable function in drivers/xen/biomerge.c in Xen might allow local OS guest users to corrupt block device data streams and consequently obtain sensitive memory information, cause a denial of service, or gain host OS privileges ...

  • EPSS 0.13%
  • Veröffentlicht 24.08.2017 14:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Xen allows local OS guest users to cause a denial of service (crash) or possibly obtain sensitive information or gain privileges via vectors involving transitive grants.

  • EPSS 0.05%
  • Veröffentlicht 24.08.2017 14:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Race condition in the grant table code in Xen 4.6.x through 4.9.x allows local guest OS administrators to cause a denial of service (free list corruption and host crash) or gain privileges on the host via vectors involving maptrack free list handling...

  • EPSS 0.1%
  • Veröffentlicht 24.08.2017 14:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

arch/x86/mm.c in Xen allows local PV guest OS users to gain host OS privileges via vectors related to map_grant_ref.

  • EPSS 0.09%
  • Veröffentlicht 15.08.2017 16:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Xen maintains the _GTF_{read,writ}ing bits as appropriate, to inform the guest that a grant is in use. A guest is expected not to modify the grant details while it is in use, whereas the guest is free to modify/reuse the grant entry when it is not in...

  • EPSS 1.67%
  • Veröffentlicht 05.07.2017 01:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Xen through 4.8.x mishandles page transfer, which allows guest OS users to obtain privileged host OS access, aka XSA-217.

  • EPSS 1.2%
  • Veröffentlicht 05.07.2017 01:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The grant-table feature in Xen through 4.8.x provides false mapping information in certain cases of concurrent unmap calls, which allows backend attackers to obtain sensitive information or gain privileges, aka XSA-218 bug 1.

  • EPSS 0.6%
  • Veröffentlicht 05.07.2017 01:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The grant-table feature in Xen through 4.8.x has a race condition leading to a double free, which allows guest OS users to cause a denial of service (memory consumption), or possibly obtain sensitive information or gain privileges, aka XSA-218 bug 2.

  • EPSS 0.49%
  • Veröffentlicht 05.07.2017 01:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The shadow-paging feature in Xen through 4.8.x mismanages page references and consequently introduces a race condition, which allows guest OS users to obtain Xen privileges, aka XSA-219.