Filter
AND
-Infinity
0

Xen XAPIThe PV pagetable code in arch/x86/mm.c in Xen 4.7.x and earlier allows local 32-bit PV guest OS admi…

8.8
First published (updated )

Xen XAPIInfoleak

8.6
First published (updated )

Xen XAPIInput Validation

8.5
First published (updated )

Xen XAPIThe hvm_msr_read_intercept function in arch/x86/hvm/hvm.c in Xen 4.1 through 4.4.x uses an improper …

8.3
First published (updated )

Xen XAPIUse After Free

7.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Xen XAPIXen 3.3.x through 4.5.x does not properly restrict access to PCI MSI mask bits, which allows local x…

7.8
First published (updated )

Xen XAPIThe libxl toolstack library in Xen 4.1.x through 4.6.x does not properly release mappings of files u…

7.8
First published (updated )

Xen XAPIXen 4.0.x through 4.7.x mishandle x86 task switches to VM86 mode, which allows local 32-bit x86 HVM …

7.8
First published (updated )

Xen XAPIThe x86 emulator in Xen 3.2.x through 4.5.x does not properly ignore segment overrides for instructi…

7.2
First published (updated )

Xen XAPIInput Validation

7.2
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Xen XAPIUse After Free

7.2
First published (updated )

Xen XAPIInput Validation

7.1
First published (updated )

Xen XAPIXen 4.3.x, 4.4.x, and 4.5.x, when using toolstack disaggregation, allows remote domains with partial…

7.1
First published (updated )

Xen XAPIBuffer Overflow

First published (updated )

Xen XAPIThe libxl device-handling in Xen 4.6.x and earlier allows local OS guest administrators to cause a d…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Xen XAPIThe paging_invlpg function in include/asm-x86/paging.h in Xen 3.3.x through 4.6.x, when using shadow…

First published (updated )

Xen XAPIRace Condition

First published (updated )

Xen XAPIInput Validation

First published (updated )

Xen XAPIAn issue was discovered in Xen 4.4.x through 4.9.x allowing ARM guest OS users to cause a denial of …

First published (updated )

Xen XAPINull Pointer Dereference

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Xen XAPIMemory leak in Xen 3.3 through 4.8.x allows guest OS users to cause a denial of service (ARM or x86 …

First published (updated )

Xen XAPIThe KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS us…

First published (updated )

Xen XAPIThe acceleration support for the "REP MOVS" instruction in Xen 4.4.x, 3.2.x, and earlier lacks prope…

First published (updated )

Xen XAPIThe evtchn_fifo_set_pending function in Xen 4.4.x allows local guest users to cause a denial of serv…

First published (updated )

Xen XAPIQEMU, as used in Xen 3.3.x through 4.5.x, does not properly restrict access to PCI command registers…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Xen XAPIInput Validation

First published (updated )

Xen XAPINull Pointer Dereference

First published (updated )

Xen XAPIXen 3.3.x through 4.5.x enables logging for PCI MSI-X pass-through error messages, which allows loca…

First published (updated )

Xen XAPIThe compat_iret function in Xen 3.1 through 4.5 iterates the wrong way through a loop, which allows …

First published (updated )

Xen XAPIXen 3.3.x through 4.5.x does not properly restrict write access to the host MSI message data field, …

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203