CVE-2026-23555
Gravedad CVSS v3.1:
ALTA
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
23/03/2026
Última modificación:
23/03/2026
Descripción
*** Pendiente de traducción *** Any guest issuing a Xenstore command accessing a node using the<br />
(illegal) node path "/local/domain/", will crash xenstored due to a<br />
clobbered error indicator in xenstored when verifying the node path.<br />
<br />
Note that the crash is forced via a failing assert() statement in<br />
xenstored. In case xenstored is being built with NDEBUG #defined,<br />
an unprivileged guest trying to access the node path "/local/domain/"<br />
will result in it no longer being serviced by xenstored, other guests<br />
(including dom0) will still be serviced, but xenstored will use up<br />
all cpu time it can get.
Impacto
Puntuación base 3.x
7.10
Gravedad 3.x
ALTA



