Логотип exploitDog
bind: "CVE-2024-31146"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2024-31146"

Количество 13

Количество 13

ubuntu логотип

CVE-2024-31146

9 месяцев назад

When multiple devices share resources and one of them is to be passed through to a guest, security of the entire system and of respective guests individually cannot really be guaranteed without knowing internals of any of the involved guests. Therefore such a configuration cannot really be security-supported, yet making that explicit was so far missing. Resources the sharing of which is known to be problematic include, but are not limited to - - PCI Base Address Registers (BARs) of multiple devices mapping to the same page (4k on x86), - - INTx lines.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-31146

9 месяцев назад

When multiple devices share resources and one of them is to be passed through to a guest, security of the entire system and of respective guests individually cannot really be guaranteed without knowing internals of any of the involved guests. Therefore such a configuration cannot really be security-supported, yet making that explicit was so far missing. Resources the sharing of which is known to be problematic include, but are not limited to - - PCI Base Address Registers (BARs) of multiple devices mapping to the same page (4k on x86), - - INTx lines.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-31146

9 месяцев назад

When multiple devices share resources and one of them is to be passed ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-hrw6-9556-27w2

9 месяцев назад

When multiple devices share resources and one of them is to be passed through to a guest, security of the entire system and of respective guests individually cannot really be guaranteed without knowing internals of any of the involved guests. Therefore such a configuration cannot really be security-supported, yet making that explicit was so far missing. Resources the sharing of which is known to be problematic include, but are not limited to - - PCI Base Address Registers (BARs) of multiple devices mapping to the same page (4k on x86), - - INTx lines.

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2024-07434

11 месяцев назад

Уязвимость компонента PCI Device Handler кроссплатформенного гипервизора Xen, позволяющая нарушителю оказывать влияние на конфиденциальность, целостность и доступность системы

CVSS3: 5.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3113-1

10 месяцев назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3075-1

10 месяцев назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3010-1

10 месяцев назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3001-1

10 месяцев назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2994-1

10 месяцев назад

Security update for xen

EPSS: Низкий
redos логотип

ROS-20240917-07

9 месяцев назад

Множественные уязвимости xen

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3586-1

9 месяцев назад

Security update for xen

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3423-1

9 месяцев назад

Security update for xen

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-31146

When multiple devices share resources and one of them is to be passed through to a guest, security of the entire system and of respective guests individually cannot really be guaranteed without knowing internals of any of the involved guests. Therefore such a configuration cannot really be security-supported, yet making that explicit was so far missing. Resources the sharing of which is known to be problematic include, but are not limited to - - PCI Base Address Registers (BARs) of multiple devices mapping to the same page (4k on x86), - - INTx lines.

CVSS3: 7.5
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2024-31146

When multiple devices share resources and one of them is to be passed through to a guest, security of the entire system and of respective guests individually cannot really be guaranteed without knowing internals of any of the involved guests. Therefore such a configuration cannot really be security-supported, yet making that explicit was so far missing. Resources the sharing of which is known to be problematic include, but are not limited to - - PCI Base Address Registers (BARs) of multiple devices mapping to the same page (4k on x86), - - INTx lines.

CVSS3: 7.5
0%
Низкий
9 месяцев назад
debian логотип
CVE-2024-31146

When multiple devices share resources and one of them is to be passed ...

CVSS3: 7.5
0%
Низкий
9 месяцев назад
github логотип
GHSA-hrw6-9556-27w2

When multiple devices share resources and one of them is to be passed through to a guest, security of the entire system and of respective guests individually cannot really be guaranteed without knowing internals of any of the involved guests. Therefore such a configuration cannot really be security-supported, yet making that explicit was so far missing. Resources the sharing of which is known to be problematic include, but are not limited to - - PCI Base Address Registers (BARs) of multiple devices mapping to the same page (4k on x86), - - INTx lines.

CVSS3: 7.5
0%
Низкий
9 месяцев назад
fstec логотип
BDU:2024-07434

Уязвимость компонента PCI Device Handler кроссплатформенного гипервизора Xen, позволяющая нарушителю оказывать влияние на конфиденциальность, целостность и доступность системы

CVSS3: 5.5
0%
Низкий
11 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3113-1

Security update for xen

10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3075-1

Security update for xen

10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3010-1

Security update for xen

10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3001-1

Security update for xen

10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2994-1

Security update for xen

10 месяцев назад
redos логотип
ROS-20240917-07

Множественные уязвимости xen

CVSS3: 7.5
9 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3586-1

Security update for xen

9 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3423-1

Security update for xen

9 месяцев назад

Уязвимостей на страницу