CVE 8.8 HIGH

x86: buffer overrun with shadow paging + tracing_CVE-2025-58150

8.8 / 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Description

Shadow mode tracing code uses a set of per-CPU variables to avoid
cumbersome parameter passing. Some of these variables are written to
with guest controlled data, of guest controllable size. That size can
be larger than the variable, and bounding of the writes was missing.

Basic Information

ID CVE-2025-58150
Source XEN
Published Jan 28, 2026 at 15:33
Modified Jan 28, 2026 at 16:46

Affected Product

Vendor Xen
Product Xen
Version consult Xen advisory XSA-477

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.