Database/Kernel, userspace & hypervisor

Xen on AMD - debug extensions (DBEXT) exposure to guests: MULTI-TENANT ISOLATION: Companion to the other XSA-444
CVE-2023-34328Kernel, userspace & hypervisorcurated
Impact
MULTI-TENANT ISOLATION: Companion to the other XSA-444 debug-extension issue on AMD. Guest-accessible debug state that is not correctly isolated across context switches.
Who can reach it
From inside a guest VM on AMD hardware under Xen.
What to do
Fixed in Xen (XSA-444). Hypervisor update plus host reboot; patch both XSA-444 CVEs together.
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.