4.6
CVSSv2

CVE-2020-29040

Published: 24/11/2020 Updated: 26/04/2022
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 8.8 | Impact Score: 6 | Exploitability Score: 2
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

An issue exists in Xen up to and including 4.14.x allowing x86 HVM guest OS users to cause a denial of service (stack corruption), cause a data leak, or possibly gain privileges because of an off-by-one error. NOTE: this issue is caused by an incorrect fix for CVE-2020-27671.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

xen xen

Vendor Advisories

Debian Bug report logs - #976109 xen: CVE-2020-29040 Package: src:xen; Maintainer for src:xen is Debian Xen Team <pkg-xen-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sun, 29 Nov 2020 19:54:01 UTC Severity: grave Tags: security, upstream Found in version xen/4140+80-g ...
A security issue has been identified that may allow privileged code running in a guest VM to compromise the host  This issue is limited to only those guest VMs where the host administrator has explicitly assigned a PCI passthrough device to the guest VMThe issue has the following identifier: ...

Mailing Lists

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Xen Security Advisory CVE-2020-29040 / XSA-355 version 3 stack corruption from XSA-346 change UPDATES IN VERSION 3 ==================== CVE assigned ISSUE DESCRIPTION ================= One of the two changes for XSA-346 introduced an on ...