漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
libxl leaks data to PVH guests via ACPI tables
Vulnerability Description
PVH guests have their ACPI tables constructed by the toolstack. The
construction involves building the tables in local memory, which are
then copied into guest memory. While actually used parts of the local
memory are filled in correctly, excess space that is being allocated is
left with its prior contents.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Xen 安全漏洞
Vulnerability Description
Xen是Xen开源的一款开源的虚拟机监视器产品。该产品能够使不同和不兼容的操作系统运行在同一台计算机上,并支持在运行时进行迁移,保证正常运行并且避免宕机。 Xen存在安全漏洞,该漏洞源于在构建PVH客人的ACPI表时,未正确初始化分配的额外内存空间,导致可能泄露之前存储在该内存区域的数据。
CVSS Information
N/A
Vulnerability Type
N/A