CVE-2022-42324
- EPSS 0.02%
- Veröffentlicht 01.11.2022 13:15:12
- Zuletzt bearbeitet 21.11.2024 07:24:45
Oxenstored 32->31 bit integer truncation issues Integers in Ocaml are 63 or 31 bits of signed precision. The Ocaml Xenbus library takes a C uint32_t out of the ring and casts it directly to an Ocaml integer. In 64-bit Ocaml builds this is fine, but i...
CVE-2022-42325
- EPSS 0.03%
- Veröffentlicht 01.11.2022 13:15:12
- Zuletzt bearbeitet 21.11.2024 07:24:45
Xenstore: Guests can create arbitrary number of nodes via transactions T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] In case a node has been created in a transaction a...
CVE-2022-42326
- EPSS 0.03%
- Veröffentlicht 01.11.2022 13:15:12
- Zuletzt bearbeitet 05.05.2025 16:15:20
Xenstore: Guests can create arbitrary number of nodes via transactions T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] In case a node has been created in a transaction a...
CVE-2022-42327
- EPSS 0.01%
- Veröffentlicht 01.11.2022 13:15:12
- Zuletzt bearbeitet 05.05.2025 20:15:18
x86: unintended memory sharing between guests On Intel systems that support the "virtualize APIC accesses" feature, a guest can read and write the global shared xAPIC page by moving the local APIC out of xAPIC mode. Access to this shared page bypasse...
CVE-2022-42309
- EPSS 0.04%
- Veröffentlicht 01.11.2022 13:15:11
- Zuletzt bearbeitet 21.11.2024 07:24:43
Xenstore: Guests can crash xenstored Due to a bug in the fix of XSA-115 a malicious guest can cause xenstored to use a wrong pointer during node creation in an error path, resulting in a crash of xenstored or a memory corruption in xenstored causing ...
CVE-2022-42310
- EPSS 0.02%
- Veröffentlicht 01.11.2022 13:15:11
- Zuletzt bearbeitet 21.11.2024 07:24:43
Xenstore: Guests can create orphaned Xenstore nodes By creating multiple nodes inside a transaction resulting in an error, a malicious guest can create orphaned nodes in the Xenstore data base, as the cleanup after the error will not remove all nodes...
CVE-2022-42311
- EPSS 0.06%
- Veröffentlicht 01.11.2022 13:15:11
- Zuletzt bearbeitet 06.05.2025 15:15:59
Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Malicious guests can cause xenstored to allocate vast amounts of mem...
CVE-2022-42312
- EPSS 0.05%
- Veröffentlicht 01.11.2022 13:15:11
- Zuletzt bearbeitet 06.05.2025 15:15:59
Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Malicious guests can cause xenstored to allocate vast amounts of mem...
CVE-2022-42313
- EPSS 0.05%
- Veröffentlicht 01.11.2022 13:15:11
- Zuletzt bearbeitet 06.05.2025 15:15:59
Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Malicious guests can cause xenstored to allocate vast amounts of mem...
CVE-2022-42314
- EPSS 0.05%
- Veröffentlicht 01.11.2022 13:15:11
- Zuletzt bearbeitet 06.05.2025 15:16:00
Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Malicious guests can cause xenstored to allocate vast amounts of mem...