Database/Kernel, userspace & hypervisor

Xen (x86 speculation): Xen hypercall page unsafe against speculative attacks - guest leaks hypervisor memory
UnscoredCVE-2024-53241Kernel, userspace & hypervisorXSA-466curated
Impact
Xen hypercall page unsafe against speculative attacks - guest leaks hypervisor memory
Who can reach it
Tenant VM guest
What to do
Hypervisor patch + host reboot with evacuation
References
Related entries
- Xen (x86 speculation): Incorrect logic for BTC/SRSO mitigationsCVE-2024-31142 · Xen (x86 speculation)High
- Xen (VT-d passthrough): Deadlock potential with VT-d and legacy PCI device pass-through - host hangCVE-2025-1713 · Xen (VT-d passthrough)Unscored
- Linux kernel KVM arm64: vCPU event ioctls before init hit a BUG() and take down the hostCVE-2025-40102 · Linux kernel KVM/arm64 (vCPU event ioctls before KVM_ARM_VCPU_INIT)Unscored
- Linux kernel amdkfd (KFD compute driver, /dev/kfd) (drm/amdkfd): A NULL pointer dereference in the amdkfd (KFD computeCVE-2025-40191 · Linux kernel amdkfd (KFD compute driver, /dev/kfd) (drm/amdkfd)Unscored
- AMD Zen 1-Zen 5 - branch predictor isolation between guest and userspace hypervisor (AMD-SB-7046): InsufficientCVE-2025-40300 · AMD Zen 1-Zen 5 - branch predictor isolation between guest and userspace hypervisor (AMD-SB-7046)Unscored
- Linux kernel amdkfd (KFD compute driver, /dev/kfd) (amd/amdkfd): A NULL pointer dereference in the amdkfd (KFD computeCVE-2025-40310 · Linux kernel amdkfd (KFD compute driver, /dev/kfd) (amd/amdkfd)Unscored
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.