Instituto Nacional de ciberseguridad. Sección Incibe
Instituto Nacional de Ciberseguridad. Sección INCIBE-CERT

CVE-2026-23555

Gravedad CVSS v3.1:
ALTA
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
23/03/2026
Última modificación:
23/03/2026

Descripción

*** Pendiente de traducción *** Any guest issuing a Xenstore command accessing a node using the<br /> (illegal) node path "/local/domain/", will crash xenstored due to a<br /> clobbered error indicator in xenstored when verifying the node path.<br /> <br /> Note that the crash is forced via a failing assert() statement in<br /> xenstored. In case xenstored is being built with NDEBUG #defined,<br /> an unprivileged guest trying to access the node path "/local/domain/"<br /> will result in it no longer being serviced by xenstored, other guests<br /> (including dom0) will still be serviced, but xenstored will use up<br /> all cpu time it can get.