CVE-2026-42492

EUVD-2026-49771
Xenstore, to have an up-to-date picture of the entire system, wants to
know of domains appearing and disappearing.  To make this more robust, a
new XEN_DOMCTL_get_domain_state was introduced.  The management of the
bitmap underlying that operation is tied into the binding of the
VIRQ_DOM_EXC virtual IRQ.  Unfortunately an error path there would tear
down the bitmap even in cases when it wasn't set up.  Unprivileged domains
can trigger that error path.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: 38.54%
Debian logo
Debian Releases
Debian Product
Codename
xen
bookworm
4.17.5+72-g01140da4e8-1
fixed
bookworm (security)
4.17.5+72-g01140da4e8-1
fixed
forky
4.20.3+127-gc42374a105-1
fixed
sid
4.20.3+127-gc42374a105-1
fixed
trixie
4.20.2+37-g61ff35323e-0+deb13u1
fixed
trixie (security)
4.20.3+127-gc42374a105-0+deb13u1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
xen
bionic
needs-triage
focal
needs-triage
jammy
needs-triage
noble
needs-triage
resolute
needs-triage
xenial
needs-triage