CVE-2026-42487
Gravedad CVSS v3.1:
ALTA
Tipo:
CWE-362
Ejecución concurrente utilizando recursos compartidos con una incorrecta sincronización (Condición de carrera)
Fecha de publicación:
18/06/2026
Última modificación:
22/06/2026
Descripción
*** Pendiente de traducción *** HVM guest I/O port accesses are subject to either emulation or at least<br />
translation. Translations are managed by the device model (via<br />
XEN_DOMCTL_ioport_mapping), and hence the linked list used may changed<br />
at any time. Traversal of those lists (while handling guest I/O port<br />
accesses) therefore needs synchronizing with updates, which was missing<br />
so far.
Impacto
Puntuación base 3.x
7.90
Gravedad 3.x
ALTA



