Логотип exploitDog
bind: "CVE-2023-46839"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2023-46839"

Количество 14

Количество 14

ubuntu логотип

CVE-2023-46839

почти 2 года назад

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2023-46839

почти 2 года назад

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2023-46839

почти 2 года назад

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2023-46839

почти 2 года назад

PCI devices can make use of a functionality called phantom functions, ...

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0270-1

почти 2 года назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0269-1

почти 2 года назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0268-1

почти 2 года назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0265-1

почти 2 года назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0264-1

почти 2 года назад

Security update for xen

EPSS: Низкий
github логотип

GHSA-8f65-fxmq-vvpx

почти 2 года назад

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.3
EPSS: Низкий
fstec логотип

BDU:2024-01016

больше 2 лет назад

Уязвимость функции phantom() гипервизора Xen, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 4.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0266-1

почти 2 года назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0830-1

почти 2 года назад

Security update for xen

EPSS: Низкий
redos логотип

ROS-20240911-11

больше 1 года назад

Множественные уязвимости xen

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-46839

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.3
0%
Низкий
почти 2 года назад
redhat логотип
CVE-2023-46839

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.5
0%
Низкий
почти 2 года назад
nvd логотип
CVE-2023-46839

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.3
0%
Низкий
почти 2 года назад
debian логотип
CVE-2023-46839

PCI devices can make use of a functionality called phantom functions, ...

CVSS3: 5.3
0%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:0270-1

Security update for xen

0%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:0269-1

Security update for xen

0%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:0268-1

Security update for xen

0%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:0265-1

Security update for xen

0%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:0264-1

Security update for xen

0%
Низкий
почти 2 года назад
github логотип
GHSA-8f65-fxmq-vvpx

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.3
0%
Низкий
почти 2 года назад
fstec логотип
BDU:2024-01016

Уязвимость функции phantom() гипервизора Xen, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 4.1
0%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:0266-1

Security update for xen

почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:0830-1

Security update for xen

почти 2 года назад
redos логотип
ROS-20240911-11

Множественные уязвимости xen

CVSS3: 8.8
больше 1 года назад

Уязвимостей на страницу