CVE-2021-28712: Medium severity xen xapi vulnerability
Last updated 25 April 2025
Other sources
Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Xen offers the ability to run PV backends in regular unprivileged guests, typically referred to as "driver domains". Running PV backends in driver domains has one primary security advantage: if a driver domain gets compromised, it doesn't have the privileges to take over the system. However, a malicious driver domain could try to attack other guests via sending events at a high frequency leading to a Denial of Service in the guest due to trying to service interrupts for elongated amounts of time. There are three affected backends: blkfront patch 1, CVE-2021-28711 netfront patch 2, CVE-2021-28712 hvcxen (console) patch 3, CVE-2021-28713
— Launchpad
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2021-28712?
CVE-2021-28712 has a high severity severity rating due to its potential for Denial of Service.
How do I fix CVE-2021-28712?
To fix CVE-2021-28712, ensure that you update to the latest patched versions of the affected Linux packages.
Which software is affected by CVE-2021-28712?
CVE-2021-28712 affects various versions of the Linux kernel, including Debian Linux versions 9.0, 10.0, and 11.0.
What types of attacks can exploit CVE-2021-28712?
CVE-2021-28712 can be exploited by rogue backends that generate high-frequency events leading to a Denial of Service.
Is CVE-2021-28712 related to other vulnerabilities?
Yes, CVE-2021-28712 is part of a collection of vulnerabilities that affect the Xen hypervisor and its backend implementations.