Citrix / Xenserver
50 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2024-5661 | Potential Denial of Service affecting XenServer and Citrix Hypervisor | MEDIUM | 6.0 | Jun 13, 2024 |
| CVE-2012-4606 | Citrix XenServer 4.1, 6.0, 5.6 SP2, 5.6 Feature Pack 1, 5.6 Common Criteria, 5.6, 5.5, 5.0, and 5.0 Update 3 contains a Local Privilege Escalation Vulnerabilit… | HIGH | 7.8 | Jan 23, 2020 |
| CVE-2014-3798 | The Windows Guest Tools in Citrix XenServer 6.2 SP1 and earlier allows remote attackers to cause a denial of service (guest OS crash) via a crafted Ethernet fr… | MEDIUM | 6.5 | Jul 11, 2019 |
| CVE-2018-19965 | xen: x86: DoS from attempting to use INVPCID with a non-canonical addresses | MEDIUM | 5.9 | Dec 8, 2018 |
| CVE-2018-19962 | xen: insufficient TLB flushing / improper large page mappings with AMD IOMMUs | HIGH | 8.1 | Dec 8, 2018 |
| CVE-2018-19961 | xen: insufficient TLB flushing / improper large page mappings with AMD IOMMUs | HIGH | 8.1 | Dec 8, 2018 |
| CVE-2018-14007 | Citrix XenServer 7.1 and newer allows Directory Traversal. | CRITICAL | 9.8 | Aug 15, 2018 |
| CVE-2016-9603 | Qemu: cirrus: heap buffer overflow via vnc connection | CRITICAL | 9.9 | Jul 27, 2018 |
| CVE-2017-2620 | Qemu: display: cirrus: potential arbitrary code execution via cirrus_bitblt_cputovideo | CRITICAL | 9.9 | Jul 27, 2018 |
| CVE-2017-2615 | Qemu: display: cirrus: oob access while doing bitblt copy backward mode | CRITICAL | 9.1 | Jul 2, 2018 |
| CVE-2018-3665 | Kernel: FPU state information leakage via lazy FPU restore | MEDIUM | 5.6 | Jun 21, 2018 |
| CVE-2018-8897 | Kernel: error in exception handling leads to DoS | HIGH | 7.8 | May 8, 2018 |
| CVE-2017-12137 | xen: x86: PV privilege escalation via map_grant_ref (XSA-227) | HIGH | 8.8 | Aug 24, 2017 |
| CVE-2017-12136 | xen: grant_table: Race conditions with maptrack free list handling (XSA-228) | CRITICAL | 9.1 | Aug 24, 2017 |
| CVE-2017-12135 | xen: possibly unbounded recursion in grant table code (XSA-226) | HIGH | 8.8 | Aug 24, 2017 |
| CVE-2017-12134 | xen: linux: Fix Xen block IO merge-ability calculation (XSA-229) | HIGH | 8.8 | Aug 24, 2017 |
| CVE-2015-7705 | ntp: denial of service by trigerring rate limiting on NTP server | CRITICAL | 9.8 | Aug 7, 2017 |
| CVE-2015-7704 | ntp: disabling synchronization via crafted KoD packet | HIGH | 7.5 | Aug 7, 2017 |
| CVE-2016-9637 | Xen: qemu ioport out-of-bounds array access (XSA-199) | HIGH | 7.6 | Feb 16, 2017 |
| CVE-2017-5573 | An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can cancel tasks of other administra… | MEDIUM | 4.9 | Jan 30, 2017 |
| CVE-2017-5572 | An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can corrupt the host database. | MEDIUM | 6.5 | Jan 30, 2017 |
| CVE-2016-10025 | xen: x86: missing NULL pointer check in VMFUNC emulation (XSA-203) | HIGH | 7.7 | Jan 26, 2017 |
| CVE-2016-10024 | xen: x86 PV guests may be able to mask interrupts (XSA-202) | MEDIUM | 6.8 | Jan 26, 2017 |
| CVE-2016-9386 | xen: x86 null segments not always treated as unusable (XSA-191) | HIGH | 7.8 | Jan 23, 2017 |
| CVE-2016-9385 | xen: x86 segment base write emulation lacking canonical address checks (XSA-193) | MEDIUM | 6.8 | Jan 23, 2017 |
Showing 1 to 25 of 50 CVEs