CVE-2025-27465
published 2025-07-16CVE-2025-27465: Certain instructions need intercepting and emulating by Xen. In some cases Xen emulates the instruction by replaying it, using an executable stub. Some…
PriorityP419medium4.3CVSS 3.1
AVNACLPRLUINSUCNINAL
EPSS
0.55%
42.5th percentile
Certain instructions need intercepting and emulating by Xen. In some
cases Xen emulates the instruction by replaying it, using an executable
stub. Some instructions may raise an exception, which is supposed to be
handled gracefully. Certain replayed instructions have additional logic
to set up and recover the changes to the arithmetic flags.
For replayed instructions where the flags recovery logic is used, the
metadata for exception handling was incorrect, preventing Xen from
handling the the exception gracefully, treating it as fatal instead.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | xen | < xen 4.17.5+72-g01140da4e8-1 (bookworm) | xen 4.17.5+72-g01140da4e8-1 (bookworm) |
| xen | xen | >= 0 < 4.18.5-r1 | 4.18.5-r1 |
| xen | xen | >= 0 < 4.18.5-r1 | 4.18.5-r1 |
| xen | xen | >= 0 < 4.19.2-r2 | 4.19.2-r2 |
| xen | xen | >= 0 < 4.20.1-r0 | 4.20.1-r0 |
| xen | xen | >= 0 < 4.20.1-r0 | 4.20.1-r0 |
| xen | xen | >= 0 < 4.17.5+72-g01140da4e8-1 | 4.17.5+72-g01140da4e8-1 |
| xen | xen | >= 0 < 4.20.2+7-g1badcf5035-0+deb13u1 | 4.20.2+7-g1badcf5035-0+deb13u1 |
| xen | xen | >= 0 < 4.20.2+7-g1badcf5035-1 | 4.20.2+7-g1badcf5035-1 |
| xen | xen | >= 4.9.0 | — |
CVSS provenance
nvdv3.14.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
osv4.3MEDIUM
vendor_debian4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2025-27465: Certain instructions need intercepting and emulating by Xen
osv·2025-07-16·CVSS 4.3
CVE-2025-27465 [MEDIUM] CVE-2025-27465: Certain instructions need intercepting and emulating by Xen
Certain instructions need intercepting and emulating by Xen. In some cases Xen emulates the instruction by replaying it, using an executable stub. Some instructions may raise an exception, which is supposed to be handled gracefully. Certain replayed instructions have additional logic to set up and recover the changes to the arithmetic flags. For replayed instructions where the flags recovery logic is used, the metadata for exception handling was incorrect, preventing Xen from handling the the exception gracefully, treating it as fatal instead.
GHSA
GHSA-2vp3-crwq-3fg5: Certain instructions need intercepting and emulating by Xen
ghsa_unreviewed·2025-07-16
CVE-2025-27465 [MEDIUM] CWE-755 GHSA-2vp3-crwq-3fg5: Certain instructions need intercepting and emulating by Xen
Certain instructions need intercepting and emulating by Xen. In some
cases Xen emulates the instruction by replaying it, using an executable
stub. Some instructions may raise an exception, which is supposed to be
handled gracefully. Certain replayed instructions have additional logic
to set up and recover the changes to the arithmetic flags.
For replayed instructions where the flags recovery logic is used, the
metadata for exception handling was incorrect, preventing Xen from
handling the the exception gracefully, treating it as fatal instead.
OSV
CVE-2025-27465: Certain instructions need intercepting and emulating by Xen
osv·2025-07-16·CVSS 4.3
CVE-2025-27465 [MEDIUM] CVE-2025-27465: Certain instructions need intercepting and emulating by Xen
Certain instructions need intercepting and emulating by Xen. In some
cases Xen emulates the instruction by replaying it, using an executable
stub. Some instructions may raise an exception, which is supposed to be
handled gracefully. Certain replayed instructions have additional logic
to set up and recover the changes to the arithmetic flags.
For replayed instructions where the flags recovery logic is used, the
metadata for exception handling was incorrect, preventing Xen from
handling the the exception gracefully, treating it as fatal instead.
Debian
CVE-2025-27465: xen - Certain instructions need intercepting and emulating by Xen. In some cases Xen ...
vendor_debian·2025·CVSS 4.3
CVE-2025-27465 [MEDIUM] CVE-2025-27465: xen - Certain instructions need intercepting and emulating by Xen. In some cases Xen ...
Certain instructions need intercepting and emulating by Xen. In some cases Xen emulates the instruction by replaying it, using an executable stub. Some instructions may raise an exception, which is supposed to be handled gracefully. Certain replayed instructions have additional logic to set up and recover the changes to the arithmetic flags. For replayed instructions where the flags recovery logic is used, the metadata for exception handling was incorrect, preventing Xen from handling the the exception gracefully, treating it as fatal instead.
Scope: local
bookworm: resolved (fixed in 4.17.5+72-g01140da4e8-1)
bullseye: open
forky: resolved (fixed in 4.20.2+7-g1badcf5035-1)
sid: resolved (fixed in 4.20.2+7-g1badcf5035-1)
trixie: resolved (fixed in 4.20.2+7-g1badcf5035-0+deb13u1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-07-16
Published