channels are enabled, but without holding the correct lock. It can race
with EVTCHNOP_reset, resulting in dereferencing a NULL pointer.
Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-6424-1 | xen security update |
Solution
No solution given by the vendor.
Workaround
There are no mitigations.
Tue, 28 Jul 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Xen
Xen xen |
|
| Vendors & Products |
Xen
Xen xen |
Tue, 28 Jul 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-362 | |
| Metrics |
cvssV3_1
|
Tue, 28 Jul 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The EVTCHNOP_expand_array hypercall checks for whether FIFO event channels are enabled, but without holding the correct lock. It can race with EVTCHNOP_reset, resulting in dereferencing a NULL pointer. | |
| Title | evtchn: Race between FIFO expand and reset | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: XEN
Published:
Updated: 2026-07-28T16:33:32.509Z
Reserved: 2026-07-14T10:28:12.655Z
Link: CVE-2026-62432
Updated: 2026-07-28T16:33:32.509Z
Status : Deferred
Published: 2026-07-28T13:19:02.110
Modified: 2026-07-28T17:16:56.733
Link: CVE-2026-62432
No data.
OpenCVE Enrichment
Updated: 2026-08-03T15:15:04Z
Debian DSA