#VU73895 Permissions, Privileges, and Access Controls in Xen - CVE-2022-42334
Published: March 21, 2023
Xen
Xen Project
Description
The vulnerability allows an attacker to perform a denial of service attack or escalate privileges on the system.
The
vulnerability exists due to mishandling of pinned cache attributes,
related to improper serialization of installation and removal of regions. An attacker controlling
HVM guests can perform a denial of service (DoS) attack and potentially
escalate privileges.