Описание
The EVTCHNOP_expand_array hypercall checks for whether FIFO event channels are enabled, but without holding the correct lock. It can race with EVTCHNOP_reset, resulting in dereferencing a NULL pointer.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| xen | fixed | 4.20.3+127-gc42374a105-1 | package | |
| xen | end-of-life | bullseye | package |
Примечания
https://xenbits.xen.org/xsa/advisory-505.html
EPSS
Процентиль: 12%
0.00212
Низкий
Связанные уязвимости
CVSS3: 7.3
ubuntu
8 дней назад
(The EVTCHNOP_expand_array hypercall checks for whether FIFO event chan ...)
CVSS3: 7.3
nvd
9 дней назад
The EVTCHNOP_expand_array hypercall checks for whether FIFO event channels are enabled, but without holding the correct lock. It can race with EVTCHNOP_reset, resulting in dereferencing a NULL pointer.
CVSS3: 7.3
github
9 дней назад
The EVTCHNOP_expand_array hypercall checks for whether FIFO event channels are enabled, but without holding the correct lock. It can race with EVTCHNOP_reset, resulting in dereferencing a NULL pointer.
EPSS
Процентиль: 12%
0.00212
Низкий