CVE-2020-29566: Medium severity xen xapi vulnerability

Published Dec 15, 2020
·
Updated

An issue was discovered in Xen through 4.14.x. When they require assistance from the device model, x86 HVM guests must be temporarily de-scheduled. The device model will signal Xen when it has completed its operation, via an event channel, so that the relevant vCPU is rescheduled. If the device model were to signal Xen without having actually completed the operation, the de-schedule / re-schedule cycle would repeat. If, in addition, Xen is resignalled very quickly, the re-schedule may occur before the de-schedule was fully complete, triggering a shortcut. This potentially repeating process uses ordinary recursive function calls, and thus could result in a stack overflow. A malicious or buggy stubdomain serving a HVM guest can cause Xen to crash, resulting in a Denial of Service (DoS) to the entire host. Only x86 systems are affected. Arm systems are not affected. Only x86 stubdomains serving HVM guests can exploit the vulnerability.

Affected Software

5 affected componentsFixes available
debian/xen
4.11.4+107-gef32c7afa2-14.14.6-14.14.5+94-ge49571868d-14.17.1+2-gb773c48e36-14.17.2+55-g0b56bed864-1
XEN Xen<=4.14.0
Debian Debian Linux=10.0
Fedoraproject Fedora=32
Fedoraproject Fedora=33

Event History

Dec 15, 2020
CVE Published
via MITRE·04:49 PM
Data Sourced
via MITRE·04:49 PM
Description

Frequently Asked Questions

1

What is the severity of CVE-2020-29566?

The severity of CVE-2020-29566 is generally considered to be high due to potential security implications for x86 HVM guests.

2

How do I fix CVE-2020-29566?

To fix CVE-2020-29566, update to a patched version of Xen, such as 4.11.4+107-gef32c7afa2-1 or later.

3

What versions of Xen are affected by CVE-2020-29566?

CVE-2020-29566 affects Xen versions up to and including 4.14.0.

4

What types of systems are impacted by CVE-2020-29566?

CVE-2020-29566 impacts systems running Xen on x86 architectures.

5

Is CVE-2020-29566 relevant for Debian and Fedora users?

Yes, CVE-2020-29566 is relevant for users of Debian versions like 10.0 and Fedora versions 32 and 33 that use affected Xen packages.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203