#VU115008 Permissions, Privileges, and Access Controls in Xen - CVE-2025-58145
Published: September 9, 2025
Xen
Xen Project
Description
The vulnerability allows a malicious guest to gain access to sensitive information.
The vulnerability exists due to incorrect implementation of the P2M lock when obtaining page references. A malicious guest can gain access to sensitive information and escalate privileges on the hypervisor.
Note, the vulnerability affects ARM-based systems.