Skip to main content

Vendor archive

xen CVEs

Beta · best-effort

495 CVEs tagged to vendor xen15 Critical, 162 High, 267 Medium, 51 Low, 0 Unrated.

CVE-2022-23039

Published Mar 10, 2022

Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to wh…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2022-23038

Published Mar 10, 2022

Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to wh…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2022-23037

Published Mar 10, 2022

Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to wh…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2022-23036

Published Mar 10, 2022

Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to wh…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2021-28713

Published Jan 5, 2022

Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-28712

Published Jan 5, 2022

Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-28711

Published Jan 5, 2022

Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-28703

Published Dec 7, 2021

grant table v2 status pages may remain accessible after de-allocation (take two) Guest get permitted access to certain Xen-owned pages of memory. The majority of such pages remain…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2021-28710

Published Nov 21, 2021

certain VT-d IOMMUs may not work in shared page table mode For efficiency reasons, address translation control structures (page tables) may (and, on suitable hardware, by default…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-28699

Published Aug 27, 2021

inadequate grant-v2 status frames array bounds check The v2 grant table interface separates grant attributes from grant status. That is, when operating in this mode, a guest has t…

CVSS 5.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 101-125 of 495 CVEsPage 5 of 20