required number of buffers for the given operation without any checking
being done. As a result, certain operations might access stack
rubble as structures are possibly uninitialized.
Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-6424-1 | xen security update |
Solution
No solution given by the vendor.
Workaround
Running only PV or PVH guests will avoid the vulnerability. (Switching from a device model stub domain or a de-privileged device model to a fully privileged Dom0 device model does NOT mitigate this vulnerability. Rather, it simply recategorises the vulnerability to hostile management code, regarding it "as designed"; thus it merely reclassifies these issues as "not a bug". The security of a Xen system using stub domains is still better than with a qemu-dm running as a Dom0 process. Users and vendors of stub qemu dm systems should not change their configuration to use a Dom0 QEMU process.)
Tue, 28 Jul 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Xen
Xen xen |
|
| Vendors & Products |
Xen
Xen xen |
Tue, 28 Jul 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Parts of the DM_OP handling code assumes the caller has provided the required number of buffers for the given operation without any checking being done. As a result, certain operations might access stack rubble as structures are possibly uninitialized. | |
| Title | correct buffer checks for DM_OP hypercalls | |
| Weaknesses | CWE-665 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: XEN
Published:
Updated: 2026-07-28T16:33:33.573Z
Reserved: 2026-07-14T10:28:12.655Z
Link: CVE-2026-62433
Updated: 2026-07-28T16:33:33.573Z
Status : Deferred
Published: 2026-07-28T13:19:02.207
Modified: 2026-07-28T17:16:57.470
Link: CVE-2026-62433
No data.
OpenCVE Enrichment
Updated: 2026-08-05T00:00:03Z
Debian DSA