İçeriğe atla
Noroxi

Xen kayıtları

xen üreticisine ait 497 yayımlanmış kayıt.

Tüm kayıtlar

497 kayıt
  • CVE-2015-5165
    41Planlayın

    The C+ mode offload emulation in the RTL8139 network card device model in QEMU, as used in Xen 4.5.x and earlier, allows remote attackers to

    KritikCVSS 9,3İstismar yokEPSS %13

    xen · xen12 Ağu 2015

  • CVE-2017-10918
    41Planlayın

    Xen through 4.8.x does not validate memory allocations during certain P2M operations, which allows guest OS users to obtain privileged host

    KritikCVSS 10,0İstismar yokEPSS %4

    xen · xen4 Tem 2017

  • CVE-2017-10912
    41Planlayın

    Xen through 4.8.x mishandles page transfer, which allows guest OS users to obtain privileged host OS access, aka XSA-217.

    KritikCVSS 10,0İstismar yokEPSS %3

    xen · xen4 Tem 2017

  • CVE-2017-10921
    41Planlayın

    The grant-table feature in Xen through 4.8.x does not ensure sufficient type counts for a GNTMAP_device_map and GNTMAP_host_map mapping, whi

    KritikCVSS 10,0İstismar yokEPSS %3

    xen · xen4 Tem 2017

  • CVE-2017-10920
    41Planlayın

    The grant-table feature in Xen through 4.8.x mishandles a GNTMAP_device_map and GNTMAP_host_map mapping, when followed by only a GNTMAP_host

    KritikCVSS 10,0İstismar yokEPSS %3

    xen · xen4 Tem 2017

  • CVE-2015-8104
    41Planlayın

    The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denial of service (host O

    KritikCVSS 10,0İstismar yokEPSS %3

    xen · xen16 Kas 2015

  • CVE-2012-0217
    40Planlayın

    The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and other products; Orac

    YüksekCVSS 7,2SilahlaştırılmışEPSS %40

    xen · xen12 Haz 2012

  • CVE-2017-2620
    40Planlayın

    Quick emulator (QEMU) before 2.8 built with the Cirrus CLGD 54xx VGA Emulator support is vulnerable to an out-of-bounds access issue.

    KritikCVSS 9,9İstismar yokEPSS %4

    qemu · qemu27 Tem 2018

  • CVE-2017-10913
    40Planlayın

    The grant-table feature in Xen through 4.8.x provides false mapping information in certain cases of concurrent unmap calls, which allows bac

    KritikCVSS 9,8İstismar yokEPSS %3

    xen · xen4 Tem 2017

  • CVE-2019-18425
    40Planlayın

    An issue was discovered in Xen through 4.12.x allowing 32-bit PV guest OS users to gain guest OS privileges by installing and using descript

    KritikCVSS 9,8İstismar yokEPSS %3

    xen · xen31 Eki 2019

  • CVE-2018-12892
    40Planlayın

    An issue was discovered in Xen 4.7 through 4.10.x.

    KritikCVSS 9,9İstismar yokEPSS %3

    xen · xen2 Tem 2018

  • CVE-2025-58142
    39İzleyin

    Mutiple vulnerabilities in the Viridian interface

    KritikCVSS 9,8İstismar yokEPSS %0

    xen · xen11 Eyl 2025

  • CVE-2025-27466
    39İzleyin

    Mutiple vulnerabilities in the Viridian interface

    KritikCVSS 9,8İstismar yokEPSS %0

    xen · xen11 Eyl 2025

  • CVE-2025-58143
    39İzleyin

    Mutiple vulnerabilities in the Viridian interface

    KritikCVSS 9,8İstismar yokEPSS %0

    xen · xen11 Eyl 2025

  • CVE-2018-8897
    37İzleyin

    A statement in the System Programming Guide of the Intel 64 and IA-32 Architectures Software Developer's Manual (SDM) was mishandled in the

    YüksekCVSS 7,8SilahlaştırılmışEPSS %18

    debian · debian linux8 May 2018

  • CVE-2017-2615
    37İzleyin

    Quick emulator (QEMU) built with the Cirrus CLGD 54xx VGA emulator support is vulnerable to an out-of-bounds access issue.

    KritikCVSS 9,1İstismar yokEPSS %4

    qemu · qemu2 Tem 2018

  • CVE-2017-15597
    37İzleyin

    An issue was discovered in Xen through 4.9.x.

    KritikCVSS 9,1İstismar yokEPSS %3

    xen · xen30 Eki 2017

  • CVE-2017-10917
    37İzleyin

    Xen through 4.8.x does not validate the port numbers of polled event channel ports, which allows guest OS users to cause a denial of service

    KritikCVSS 9,1İstismar yokEPSS %3

    xen · xen4 Tem 2017

  • CVE-2017-10915
    37İzleyin

    The shadow-paging feature in Xen through 4.8.x mismanages page references and consequently introduces a race condition, which allows guest O

    KritikCVSS 9,0İstismar yokEPSS %2

    xen · xen4 Tem 2017

  • CVE-2022-4949
    36İzleyin

    AdSanity < 1.8.2 - Authenticated Arbitrary File Upload

    YüksekCVSS 8,8İstismar yokEPSS %2

    adsanityplugin · adsanity6 Haz 2023

  • CVE-2019-18423
    36İzleyin

    An issue was discovered in Xen through 4.12.x allowing ARM guest OS users to cause a denial of service via a XENMEM_add_to_physmap hypercall

    YüksekCVSS 8,8İstismar yokEPSS %2

    xen · xen31 Eki 2019

  • CVE-2019-18422
    36İzleyin

    An issue was discovered in Xen through 4.12.x allowing ARM guest OS users to cause a denial of service or gain privileges by leveraging the

    YüksekCVSS 8,8İstismar yokEPSS %2

    xen · xen31 Eki 2019

  • CVE-2024-31142
    35İzleyin

    x86: Incorrect logic for BTC/SRSO mitigations

    YüksekCVSS 7,5İstismar yokEPSS %17

    xen · xen16 May 2024

  • CVE-2015-3456
    35İzleyin

    The Floppy Disk Controller (FDC) in QEMU, as used in Xen 4.5.x and earlier and KVM, allows local guest users to cause a denial of service (o

    YüksekCVSS 7,7Kavram kanıtıEPSS %15

    qemu · qemu13 May 2015

  • CVE-2015-8555
    35İzleyin

    Xen 4.6.x, 4.5.x, 4.4.x, 4.3.x, and earlier do not initialize x86 FPU stack and XMM registers when XSAVE/XRSTOR are not used to manage guest

    YüksekCVSS 8,6İstismar yokEPSS %2

    xen · xen13 Nis 2016