[WID-SEC-2026-3248] Xen: Mehrere Schwachstellen CVSS Base Score 8.4 (hoch) CVSS Temporal Score 7.3 (hoch) Remoteangriff nein Datum 08.09.2026 Stand 09.09.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux Produktbeschreibung Xen ist ein Virtueller-Maschinen-Monitor (VMM), der Hardware (x86, IA-64, PowerPC) für die darauf laufenden Systeme (Domains) paravirtualisiert. Produkte 08.09.2026 Open Source Xen 4.17.x Open Source Xen 4.22.x Open Source Xen 4.21.x Open Source Xen 4.20.x Open Source Xen 4.19.x Open Source Xen 4.18.x Angriff Angriff Ein Angreifer kann mehrere Schwachstellen in Xen ausnutzen, um einen Denial of Service Angriff durchzuführen, beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen und Daten zu manipulieren. CVE Informationen Versionshistorie Feedback zum Advisory geben
Multiple vulnerabilities in the Xen hypervisor (CVE not specified) can be exploited by an attacker to cause a denial of service, execute arbitrary code, bypass security measures, and manipulate data, though a remote attack vector is not present. The CVSS Base Score is 8.4 (High). Affected versions include Open Source Xen 4.17.x, 4.18.x, 4.19.x, 4.20.x, 4.21.x, and 4.22.x. Mitigations are available, but the article does not specify a fixed version or a specific workaround.