https://seclists.org/oss-sec/2025/q4/65: Xen Security Advisory 475 v2 (CVE-2025-58147,CVE-2025-58148) - x86: Incorct input sanitisation in Viridian hypercalls
Published Oct 21, 2025
·Updated
Affected Software
1 affected component
XEN Xen Hypervisor
Frequently Asked Questions
1
What is the severity of CVE-2025-58147 and CVE-2025-58148?
The severity of CVE-2025-58147 and CVE-2025-58148 is classified as high due to the potential for unauthorized access and denial of service.
2
How do I fix CVE-2025-58147 and CVE-2025-58148?
To mitigate CVE-2025-58147 and CVE-2025-58148, update to the latest version of the Xen Hypervisor that includes the security patches.
3
What systems are affected by CVE-2025-58147 and CVE-2025-58148?
CVE-2025-58147 and CVE-2025-58148 affect all versions of the Xen Hypervisor that utilize Viridian hypercalls.
4
What are the technical details of CVE-2025-58147 and CVE-2025-58148?
CVE-2025-58147 and CVE-2025-58148 involve incorrect input sanitization in Viridian hypercalls, allowing potential exploitation.
5
Is there a workaround for CVE-2025-58147 and CVE-2025-58148?
Currently, there are no recommended workarounds for CVE-2025-58147 and CVE-2025-58148; patching is the advised course of action.