Vulnerability index

Browse CVEs

149 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.1 CVE-2021-28692 inappropriate x86 IOMMU timeout detection / handling IOMMUs process commands issued to them in parallel with the operation of the CPU(s) issuing such… Xen Mitigation only Fix from $1,9502021-06-30 MEDIUM 5.5 CVE-2021-28693 xen/arm: Boot modules are not scrubbed The bootloader will load boot modules (e.g. kernel, initramfs...) in a temporary area before they are copied b… Xen after 4.15.0 Fix from $1,6002021-06-30 MEDIUM 6.5 CVE-2021-28690 x86: TSX Async Abort protections not restored after S3 This issue relates to the TSX Async Abort speculative security vulnerability. Please see https… Xen after 4.15.0 Fix from $1,6002021-06-29 MEDIUM 5.5 CVE-2021-28687 HVM soft-reset crashes toolstack libxl requires all data structures passed across its public interface to be initialized before use and disposed of a… Xen after 4.15.0 Fix from $1,6002021-06-11 MEDIUM 5.5 CVE-2021-28689 x86: Speculative vulnerabilities with bare (non-shim) 32-bit PV guests 32-bit x86 PV guest kernels run in ring 1. At the time when Xen was developed,… Xen 4.12.0+ Fix from $1,6002021-06-11 HIGH 7.5 CVE-2020-29487 An issue was discovered in Xen XAPI before 2020-12-15. Certain xenstore keys provide feedback from the guest, and are therefore watched by toolstack.… Xapi 2020-12-15+ Fix from $1,9502020-12-15 HIGH 8.8 CVE-2020-29040 An issue was discovered in Xen through 4.14.x allowing x86 HVM guest OS users to cause a denial of service (stack corruption), cause a data leak, or … Xen after 4.14.0 Fix from $1,9502020-11-24 HIGH 7.8 CVE-2018-19963 An issue was discovered in Xen 4.11 allowing HVM guest OS users to cause a denial of service (host OS crash) or possibly gain host OS privileges beca… Xen Patch available Fix from $1,9502018-12-08 MEDIUM 6.5 CVE-2018-19964 An issue was discovered in Xen 4.11.x allowing x86 guest OS users to cause a denial of service (host OS hang) because the p2m lock remains unavailabl… Xen after 4.11.1 Fix from $1,6002018-12-08 HIGH 8.8 CVE-2018-18883 An issue was discovered in Xen 4.9.x through 4.11.x, on Intel x86 platforms, allowing x86 HVM and PVH guests to cause a host OS denial of service (NU… Xen after 4.11.0 Fix from $1,9502018-11-01 MEDIUM 6.5 CVE-2018-15470 An issue was discovered in Xen through 4.11.x. The logic in oxenstored for handling writes depended on the order of evaluation of expressions making … Xen after 4.11.0 Fix from $1,6002018-08-17 MEDIUM 6.0 CVE-2018-15468 An issue was discovered in Xen through 4.11.x. The DEBUGCTL MSR contains several debugging features, some of which virtualise cleanly, but some do no… Xen after 4.11.0 Fix from $1,6002018-08-17 MEDIUM 6.5 CVE-2018-5244 In Xen 4.10, new infrastructure was introduced as part of an overhaul to how MSR emulation happens for guests. Unfortunately, one tracking structure … Xen Mitigation only Fix from $1,6002018-01-05 HIGH 7.8 CVE-2017-17563 An issue was discovered in Xen through 4.9.x allowing guest OS users to cause a denial of service (host OS crash) or gain host OS privileges by lever… Xen after 4.9.1 Fix from $1,9502017-12-12 HIGH 7.8 CVE-2017-17564 An issue was discovered in Xen through 4.9.x allowing guest OS users to cause a denial of service (host OS crash) or gain host OS privileges by lever… Xen after 4.9.1 Fix from $1,9502017-12-12 HIGH 7.8 CVE-2017-17566 An issue was discovered in Xen through 4.9.x allowing PV guest OS users to cause a denial of service (host OS crash) or gain host OS privileges in sh… Xen after 4.9.1 Fix from $1,9502017-12-12 MEDIUM 5.6 CVE-2017-17565 An issue was discovered in Xen through 4.9.x allowing PV guest OS users to cause a denial of service (host OS crash) if shadow mode and log-dirty mod… Xen after 4.9.1 Fix from $1,6002017-12-12 HIGH 8.8 CVE-2017-17045 An issue was discovered in Xen through 4.9.x allowing HVM guest OS users to gain privileges on the host OS, obtain sensitive information, or cause a … Xen after 4.9.1 Fix from $1,9502017-11-28 MEDIUM 6.5 CVE-2017-17044 An issue was discovered in Xen through 4.9.x allowing HVM guest OS users to cause a denial of service (infinite loop and host OS hang) by leveraging … Xen after 4.9.1 Fix from $1,6002017-11-28 MEDIUM 6.5 CVE-2017-17046 An issue was discovered in Xen through 4.9.x on the ARM platform allowing guest OS users to obtain sensitive information from DRAM after a reboot, be… Xen after 4.9.1 Fix from $1,6002017-11-28 CRITICAL 9.1 CVE-2017-15597 An issue was discovered in Xen through 4.9.x. Grant copying code made an implication that any grant pin would be accompanied by a suitable page refer… Xen after 4.9.0 Fix from $2,3002017-10-30 HIGH 8.8 CVE-2017-15590 An issue was discovered in Xen through 4.9.x allowing x86 guest OS users to cause a denial of service (hypervisor crash) or possibly gain privileges … Xen Patch available Fix from $1,9502017-10-18 HIGH 8.8 CVE-2017-15592 An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to cause a denial of service (hypervisor crash) or possibly gain privile… Xen after 4.9.0 Fix from $1,9502017-10-18 HIGH 8.8 CVE-2017-15594 An issue was discovered in Xen through 4.9.x allowing x86 SVM PV guest OS users to cause a denial of service (hypervisor crash) or gain privileges be… Xen after 4.9.0 Fix from $1,9502017-10-18 HIGH 8.8 CVE-2017-15595 An issue was discovered in Xen through 4.9.x allowing x86 PV guest OS users to cause a denial of service (unbounded recursion, stack consumption, and… Xen after 4.9.0 Fix from $1,9502017-10-18 HIGH 7.8 CVE-2017-15588 An issue was discovered in Xen through 4.9.x allowing x86 PV guest OS users to execute arbitrary code on the host OS because of a race condition that… Xen Patch available Fix from $1,9502017-10-18 MEDIUM 6.5 CVE-2017-15589 An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to obtain sensitive information from the host OS (or an arbitrary guest … Xen Patch available Fix from $1,6002017-10-18 MEDIUM 6.5 CVE-2017-15591 An issue was discovered in Xen 4.5.x through 4.9.x allowing attackers (who control a stub domain kernel or tool stack) to cause a denial of service (… Xen Patch available Fix from $1,6002017-10-18 MEDIUM 6.5 CVE-2017-15593 An issue was discovered in Xen through 4.9.x allowing x86 PV guest OS users to cause a denial of service (memory leak) because reference counts are m… Xen after 4.9.0 Fix from $1,6002017-10-18 MEDIUM 6.0 CVE-2017-15596 An issue was discovered in Xen 4.4.x through 4.9.x allowing ARM guest OS users to cause a denial of service (prevent physical CPU usage) because of l… Xen Patch available Fix from $1,6002017-10-18