Database/Kernel, userspace & hypervisor

Xen (x86): CPU opcode cache corruption - host instability triggerable from a guest
CVSS 7.0CVE-2025-54518Kernel, userspace & hypervisorXSA-490curated
Impact
CPU opcode cache corruption - host instability triggerable from a guest
Who can reach it
Tenant VM guest
What to do
Hypervisor patch + host reboot
References
Related entries
- Xen (x86): Unintended memory sharing between guests - cross-tenant data exposureCVE-2022-42327 · Xen (x86)High
- libblockdev / udisks: allow_active to root via libblockdev through udisksCVE-2025-6019 · libblockdev / udisksHigh
- Linux kernel (arch/x86/kernel/fpu): A guest that disables an XSAVE feature through XFD while the saved XSTATE_BV stillCVE-2026-23005 · Linux kernel (arch/x86/kernel/fpu)High
- Linux kernel (net/rds): RDS always programs the masked variants of the RDMA atomic opcodes, but the send-completionCVE-2026-52939 · Linux kernel (net/rds)High
- Linux kernel (drivers/pci): An SR-IOV device that stops answering config reads makes the VF Resizable BAR restore pathCVE-2026-64460 · Linux kernel (drivers/pci)High
- Windows Server Services for NFS: use-after-free in the ONCRPC XDR driver gives local code executionCVE-2026-70585 · Windows Server Services for NFS (ONCRPC XDR kernel driver)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.