CVE-2025-58150

Shadow mode tracing code uses a set of per-CPU variables to avoid cumbersome parameter passing. Some of these variables are written to with guest controlled data, of guest controllable size. That size can be larger than the variable, and bounding of the writes was missing.
References
Link Resource
https://xenbits.xenproject.org/xsa/advisory-477.html Mitigation Patch Vendor Advisory
http://www.openwall.com/lists/oss-security/2026/01/27/1 Mailing List Mitigation Patch Third Party Advisory
http://xenbits.xen.org/xsa/advisory-477.html Mailing List Patch Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:o:xen:xen:-:*:*:*:*:*:x86:*

History

No history.

Information

Published : 2026-01-28 16:16

Updated : 2026-02-09 19:13


NVD link : CVE-2025-58150

Mitre link : CVE-2025-58150

CVE.ORG link : CVE-2025-58150


JSON object : View

Products Affected

xen

  • xen
CWE
CWE-787

Out-of-bounds Write