Debian Xen vulnerabilities
444 known vulnerabilities affecting debian/xen.
Total CVEs
444
CISA KEV
0
Public exploits
9
Exploited in wild
1
Severity breakdown
CRITICAL18HIGH137MEDIUM226LOW63
Vulnerabilities
Page 23 of 23
CVE-2015-1563P4LOWCVSS 2.1fixed in xen 4.4.1-7 (bookworm)2015
CVE-2015-1563 [LOW] CVE-2015-1563: xen - The ARM GIC distributor virtualization in Xen 4.4.x and 4.5.x allows local guest...
The ARM GIC distributor virtualization in Xen 4.4.x and 4.5.x allows local guests to cause a denial of service by causing a large number messages to be logged.
Scope: local
bookworm: resolved (fixed in 4.4.1-7)
bullseye: resolved (fixed in 4.4.1-7)
forky: resolved (fixed in 4.4.1-7)
sid: resolved (fixed in 4.4.1-7)
trixie: resolved (fixed in 4.4.1-7)
debian
CVE-2015-2045P4LOWCVSS 2.1fixed in xen 4.4.1-8 (bookworm)2015
CVE-2015-2045 [LOW] CVE-2015-2045: xen - The HYPERVISOR_xen_version hypercall in Xen 3.2.x through 4.5.x does not properl...
The HYPERVISOR_xen_version hypercall in Xen 3.2.x through 4.5.x does not properly initialize data structures, which allows local guest users to obtain sensitive information via unspecified vectors.
Scope: local
bookworm: resolved (fixed in 4.4.1-8)
bullseye: resolved (fixed in 4.4.1-8)
forky: resolved (fixed in 4.4.1-8)
sid: resolved (fixed in 4.4.1-8)
trixie: resolved (fi
debian
CVE-2013-4361P4LOWCVSS 2.1fixed in xen 4.4.0-1 (bookworm)2013
CVE-2013-4361 [LOW] CVE-2013-4361: xen - The fbld instruction emulation in Xen 3.3.x through 4.3.x does not use the corre...
The fbld instruction emulation in Xen 3.3.x through 4.3.x does not use the correct variable for the source effective address, which allows local HVM guests to obtain hypervisor stack information by reading the values used by the instruction.
Scope: local
bookworm: resolved (fixed in 4.4.0-1)
bullseye: resolved (fixed in 4.4.0-1)
forky: resolved (fixed in 4.4.0-1)
sid: reso
debian
CVE-2011-3262P4LOWCVSS 2.1fixed in xen 4.1.1-1 (bookworm)2011
CVE-2011-3262 [LOW] CVE-2011-3262: xen - tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allows local us...
tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allows local users to cause a denial of service (management software infinite loop and management domain resource consumption) via unspecified vectors related to "Lack of error checking in the decompression loop."
Scope: local
bookworm: resolved (fixed in 4.1.1-1)
bullseye: resolved (fixed in 4.1.1-1)
forky:
debian
← Previous23 / 23