Security Advisory

CVE-2022-42309

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-11-01 00:00:00
Last updated 2024-08-03 13:03:45
Assigner XEN
State PUBLISHED

Description

Xenstore: Guests can crash xenstored Due to a bug in the fix of XSA-115 a malicious guest can cause xenstored to use a wrong pointer during node creation in an error path, resulting in a crash of xenstored or a memory corruption in xenstored causing further damage. Entering the error path can be controlled by the guest e.g. by exceeding the quota value of maximum nodes per domain.