6.5
CVSSv3

CVE-2021-28690

Published: 29/06/2021 Updated: 21/09/2021
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

x86: TSX Async Abort protections not restored after S3 This issue relates to the TSX Async Abort speculative security vulnerability. Please see xenbits.xen.org/xsa/advisory-305.html for details. Mitigating TAA by disabling TSX (the default and preferred option) requires selecting a non-default setting in MSR_TSX_CTRL. This setting isn't restored after S3 suspend.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

xen xen

xen xen 4.15.0

Vendor Advisories

Multiple vulnerabilities have been discovered in the Xen hypervisor, which could result in denial of service or information leaks For the stable distribution (buster), these problems have been fixed in version 4114+107-gef32c7afa2-1 We recommend that you upgrade your xen packages For the detailed security status of xen please refer to its secu ...