Back

HIGH

xen: x86: race condition in Xen mapping code (XSA-345)

Published Oct 22, 2020

Description

An issue was discovered in Xen through 4.14.x allowing x86 guest OS users to cause a host OS denial of service, achieve data corruption, or possibly gain privileges by exploiting a race condition that leads to a use-after-free involving 2MiB and 1GiB superpages.

Affected products

Remediation

Red Hat statement

All Xen versions from 3.2 onwards are vulnerable. Red Hat Enterprise Linux 5 is not affected by this flaw, as it shipped with an older version of Xen.

Red Hat mitigation

Running all guests in HVM or PVH mode, in each case with HAP enabled, will prevent those guests from exploiting the vulnerability.

Metrics

References (12)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Oct 22, 2020
Updated Aug 4, 2024
Reserved Oct 22, 2020
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Oct 20, 2020