Количество 14
Количество 14

CVE-2023-46839
PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVE-2023-46839
PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVE-2023-46839
PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.
CVE-2023-46839
PCI devices can make use of a functionality called phantom functions, ...

SUSE-SU-2024:0270-1
Security update for xen

SUSE-SU-2024:0269-1
Security update for xen

SUSE-SU-2024:0268-1
Security update for xen

SUSE-SU-2024:0265-1
Security update for xen

SUSE-SU-2024:0264-1
Security update for xen
GHSA-8f65-fxmq-vvpx
PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

BDU:2024-01016
Уязвимость функции phantom() гипервизора Xen, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

SUSE-SU-2024:0266-1
Security update for xen

SUSE-SU-2024:0830-1
Security update for xen

ROS-20240911-11
Множественные уязвимости xen
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2023-46839 PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain. | CVSS3: 5.3 | 0% Низкий | около 1 года назад |
![]() | CVE-2023-46839 PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain. | CVSS3: 5.5 | 0% Низкий | около 1 года назад |
![]() | CVE-2023-46839 PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain. | CVSS3: 5.3 | 0% Низкий | около 1 года назад |
CVE-2023-46839 PCI devices can make use of a functionality called phantom functions, ... | CVSS3: 5.3 | 0% Низкий | около 1 года назад | |
![]() | SUSE-SU-2024:0270-1 Security update for xen | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2024:0269-1 Security update for xen | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2024:0268-1 Security update for xen | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2024:0265-1 Security update for xen | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2024:0264-1 Security update for xen | 0% Низкий | больше 1 года назад | |
GHSA-8f65-fxmq-vvpx PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain. | CVSS3: 5.3 | 0% Низкий | около 1 года назад | |
![]() | BDU:2024-01016 Уязвимость функции phantom() гипервизора Xen, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 4.1 | 0% Низкий | почти 2 года назад |
![]() | SUSE-SU-2024:0266-1 Security update for xen | больше 1 года назад | ||
![]() | SUSE-SU-2024:0830-1 Security update for xen | больше 1 года назад | ||
![]() | ROS-20240911-11 Множественные уязвимости xen | CVSS3: 8.8 | 9 месяцев назад |
Уязвимостей на страницу