Database/Kernel, userspace & hypervisor

Xen (libfsimage/pygrub): Multiple vulnerabilities in libfsimage disk handling
CVE-2023-34325Kernel, userspace & hypervisorXSA-443curated
Impact
Multiple vulnerabilities in libfsimage disk handling - a hostile guest disk image compromises the toolstack in dom0
Who can reach it
Tenant-supplied disk image
What to do
Patch libfsimage and run pygrub de-privileged (see also XSA-508); toolstack restart, no full host reboot
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.