Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g7qc-r5p9-r36r

Опубликовано: 16 мая 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Because of a logical error in XSA-407 (Branch Type Confusion), the mitigation is not applied properly when it is intended to be used. XSA-434 (Speculative Return Stack Overflow) uses the same infrastructure, so is equally impacted.

For more details, see: https://xenbits.xen.org/xsa/advisory-407.html https://xenbits.xen.org/xsa/advisory-434.html

Because of a logical error in XSA-407 (Branch Type Confusion), the mitigation is not applied properly when it is intended to be used. XSA-434 (Speculative Return Stack Overflow) uses the same infrastructure, so is equally impacted.

For more details, see: https://xenbits.xen.org/xsa/advisory-407.html https://xenbits.xen.org/xsa/advisory-434.html

EPSS

Процентиль: 93%
0.11533
Средний

7.5 High

CVSS3

Дефекты

CWE-693

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 1 года назад

Because of a logical error in XSA-407 (Branch Type Confusion), the mitigation is not applied properly when it is intended to be used. XSA-434 (Speculative Return Stack Overflow) uses the same infrastructure, so is equally impacted. For more details, see: https://xenbits.xen.org/xsa/advisory-407.html https://xenbits.xen.org/xsa/advisory-434.html

CVSS3: 7.5
nvd
около 1 года назад

Because of a logical error in XSA-407 (Branch Type Confusion), the mitigation is not applied properly when it is intended to be used. XSA-434 (Speculative Return Stack Overflow) uses the same infrastructure, so is equally impacted. For more details, see: https://xenbits.xen.org/xsa/advisory-407.html https://xenbits.xen.org/xsa/advisory-434.html

CVSS3: 7.5
debian
около 1 года назад

Because of a logical error in XSA-407 (Branch Type Confusion), the mit ...

CVSS3: 7.8
redos
8 месяцев назад

Уязвимость Xen

CVSS3: 7.8
fstec
около 1 года назад

Уязвимость гипервизора Xen, связанная с путаницей типов, позволяющая нарушителю получить доступ к конфиденциальной информации и повысить свои привилегии

EPSS

Процентиль: 93%
0.11533
Средний

7.5 High

CVSS3

Дефекты

CWE-693