Логотип exploitDog
bind: "CVE-2023-46839"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2023-46839"

Количество 14

Количество 14

ubuntu логотип

CVE-2023-46839

около 1 года назад

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2023-46839

около 1 года назад

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2023-46839

около 1 года назад

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2023-46839

около 1 года назад

PCI devices can make use of a functionality called phantom functions, ...

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0270-1

больше 1 года назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0269-1

больше 1 года назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0268-1

больше 1 года назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0265-1

больше 1 года назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0264-1

больше 1 года назад

Security update for xen

EPSS: Низкий
github логотип

GHSA-8f65-fxmq-vvpx

около 1 года назад

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.3
EPSS: Низкий
fstec логотип

BDU:2024-01016

почти 2 года назад

Уязвимость функции phantom() гипервизора Xen, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 4.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0266-1

больше 1 года назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0830-1

больше 1 года назад

Security update for xen

EPSS: Низкий
redos логотип

ROS-20240911-11

9 месяцев назад

Множественные уязвимости xen

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-46839

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.3
0%
Низкий
около 1 года назад
redhat логотип
CVE-2023-46839

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.5
0%
Низкий
около 1 года назад
nvd логотип
CVE-2023-46839

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.3
0%
Низкий
около 1 года назад
debian логотип
CVE-2023-46839

PCI devices can make use of a functionality called phantom functions, ...

CVSS3: 5.3
0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0270-1

Security update for xen

0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0269-1

Security update for xen

0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0268-1

Security update for xen

0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0265-1

Security update for xen

0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0264-1

Security update for xen

0%
Низкий
больше 1 года назад
github логотип
GHSA-8f65-fxmq-vvpx

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.

CVSS3: 5.3
0%
Низкий
около 1 года назад
fstec логотип
BDU:2024-01016

Уязвимость функции phantom() гипервизора Xen, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 4.1
0%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:0266-1

Security update for xen

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0830-1

Security update for xen

больше 1 года назад
redos логотип
ROS-20240911-11

Множественные уязвимости xen

CVSS3: 8.8
9 месяцев назад

Уязвимостей на страницу