Xen

Xen

479 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.05%
  • Veröffentlicht 20.03.2024 11:15:08
  • Zuletzt bearbeitet 04.11.2025 19:16:05

Recent x86 CPUs offer functionality named Control-flow Enforcement Technology (CET). A sub-feature of this are Shadow Stacks (CET-SS). CET-SS is a hardware feature designed to protect against Return Oriented Programming attacks. When enabled, tradit...

  • EPSS 1.31%
  • Veröffentlicht 15.03.2024 18:15:08
  • Zuletzt bearbeitet 30.04.2025 23:16:01

A Speculative Race Condition (SRC) vulnerability that impacts modern CPU architectures supporting speculative execution (related to Spectre V1) has been disclosed. An unauthenticated attacker can exploit this vulnerability to disclose arbitrary data ...

  • EPSS 0.09%
  • Veröffentlicht 05.01.2024 17:15:11
  • Zuletzt bearbeitet 04.11.2025 20:17:10

The current setup of the quarantine page tables assumes that the quarantine domain (dom_io) has been initialized with an address width of DEFAULT_DOMAIN_ADDRESS_WIDTH (48) and hence 4 page table levels. However dom_io being a PV domain gets the AMD-...

  • EPSS 0.01%
  • Veröffentlicht 05.01.2024 17:15:11
  • Zuletzt bearbeitet 04.11.2025 20:17:10

The fixes for XSA-422 (Branch Type Confusion) and XSA-434 (Speculative Return Stack Overflow) are not IRQ-safe. It was believed that the mitigations always operated in contexts with IRQs disabled. However, the original XSA-254 fix for Meltdown (XPT...

  • EPSS 0.05%
  • Veröffentlicht 05.01.2024 17:15:11
  • Zuletzt bearbeitet 04.11.2025 19:16:04

Arm provides multiple helpers to clean & invalidate the cache for a given region. This is, for instance, used when allocating guest memory to ensure any writes (such as the ones during scrubbing) have reached memory before handing over the page to a...

  • EPSS 0.06%
  • Veröffentlicht 05.01.2024 17:15:08
  • Zuletzt bearbeitet 04.11.2025 20:16:30

Arm provides multiple helpers to clean & invalidate the cache for a given region. This is, for instance, used when allocating guest memory to ensure any writes (such as the ones during scrubbing) have reached memory before handing over the page to a...

  • EPSS 0.06%
  • Veröffentlicht 05.01.2024 17:15:08
  • Zuletzt bearbeitet 04.11.2025 20:16:30

For migration as well as to work around kernels unaware of L1TF (see XSA-273), PV guests may be run in shadow paging mode. Since Xen itself needs to be mapped when PV guests run, Xen and shadowed PV guests run directly the respective shadow page tab...

  • EPSS 0.09%
  • Veröffentlicht 05.01.2024 17:15:08
  • Zuletzt bearbeitet 04.11.2025 20:16:30

When a transaction is committed, C Xenstored will first check the quota is correct before attempting to commit any nodes. It would be possible that accounting is temporarily negative if a node has been removed outside of the transaction. Unfortunat...

  • EPSS 0.11%
  • Veröffentlicht 05.01.2024 17:15:08
  • Zuletzt bearbeitet 04.11.2025 20:16:30

Closing of an event channel in the Linux kernel can result in a deadlock. This happens when the close is being performed in parallel to an unrelated Xen console action and the handling of a Xen console interrupt in an unprivileged guest. The closing...

  • EPSS 0.07%
  • Veröffentlicht 05.01.2024 17:15:08
  • Zuletzt bearbeitet 04.11.2025 20:16:30

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] libfsimage contains parsing code for several filesystems, most of them based on grub-legacy code. libfsimage is used b...