Vulnerabilidades en Xen
111 resultadosCVE-2024-31142HIGHx86: Incorrect logic for BTC/SRSO mitigationsEPSS 17.4%CVE-2024-2201MEDIUMCVE-2024-2201EPSS 8.6%CVE-2023-46842MEDIUMx86 HVM hypercalls may trigger Xen bug checkEPSS 8.5%CVE-2021-28706—guests may exceed their designated memory limit When a guest is permitted to have close to 16TiB of memory, it may be able to issue hypercalEPSS 2.1%CVE-2021-28700—xen/arm: No memory limit for dom0less domUs The dom0less feature allows an administrator to create multiple unprivileged domains directly frEPSS 1.9%CVE-2022-42330—Guests can cause Xenstore crash via soft reset When a guest issues a "Soft Reset" (e.g. for performing a kexec) the libxl based Xen toolstacEPSS 1.4%CVE-2024-2193MEDIUMSpeculative Race Condition impacts modern CPU architectures that support speculative execution, also known as GhostRace.EPSS 1.2%CVE-2022-42333—x86/HVM pinned cache attributes mis-handling T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabEPSS 1.2%CVE-2021-28690—x86: TSX Async Abort protections not restored after S3 This issue relates to the TSX Async Abort speculative security vulnerability. Please EPSS 1.0%CVE-2023-46839MEDIUMpci: phantom functions assigned to incorrect contextsEPSS 0.8%CVE-2025-1713HIGHdeadlock potential with VT-d and legacy PCI device pass-throughEPSS 0.7%CVE-2025-27465MEDIUMx86: Incorrect stubs exception handling for flags recoveryEPSS 0.6%CVE-2024-45817HIGHx86: Deadlock in vlapic_error()EPSS 0.5%CVE-2024-31143HIGHdouble unlock in x86 guest IRQ handlingEPSS 0.5%CVE-2022-26364—x86 pv: Insufficient care with non-coherent mappings T[his CNA information record relates to multiple CVEs; the text explains which aspects/EPSS 0.5%CVE-2025-58142CRITICALMutiple vulnerabilities in the Viridian interfaceEPSS 0.4%CVE-2025-27466CRITICALMutiple vulnerabilities in the Viridian interfaceEPSS 0.4%CVE-2021-28702—PCI devices with RMRRs not deassigned correctly Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via ResEPSS 0.4%CVE-2025-58144HIGHArm issues with page refcountingEPSS 0.4%CVE-2021-28694—IOMMU page mapping issues on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities corrEPSS 0.4%