Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-42492

Опубликовано: 28 июл. 2026
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

Xenstore, to have an up-to-date picture of the entire system, wants to know of domains appearing and disappearing. To make this more robust, a new XEN_DOMCTL_get_domain_state was introduced. The management of the bitmap underlying that operation is tied into the binding of the VIRQ_DOM_EXC virtual IRQ. Unfortunately an error path there would tear down the bitmap even in cases when it wasn't set up. Unprivileged domains can trigger that error path.

EPSS

Процентиль: 39%
0.00477
Низкий

7.5 High

CVSS3

Дефекты

CWE-459

Связанные уязвимости

CVSS3: 7.5
ubuntu
3 дня назад

(Xenstore, to have an up-to-date picture of the entire system, wants to ...)

CVSS3: 7.5
debian
3 дня назад

Xenstore, to have an up-to-date picture of the entire system, wants to ...

CVSS3: 7.5
github
3 дня назад

Xenstore, to have an up-to-date picture of the entire system, wants to know of domains appearing and disappearing. To make this more robust, a new XEN_DOMCTL_get_domain_state was introduced. The management of the bitmap underlying that operation is tied into the binding of the VIRQ_DOM_EXC virtual IRQ. Unfortunately an error path there would tear down the bitmap even in cases when it wasn't set up. Unprivileged domains can trigger that error path.

EPSS

Процентиль: 39%
0.00477
Низкий

7.5 High

CVSS3

Дефекты

CWE-459