CVE-2026-23555

Name
CVE-2026-23555
Description
Any guest issuing a Xenstore command accessing a node using the (illegal) node path "/local/domain/", will crash xenstored due to a clobbered error indicator in xenstored when verifying the node path. Note that the crash is forced via a failing assert() statement in xenstored. In case xenstored is being built with NDEBUG #defined, an unprivileged guest trying to access the node path "/local/domain/" will result in it no longer being serviced by xenstored, other guests (including dom0) will still be serviced, but xenstored will use up all cpu time it can get.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
security@xen.org https://xenbits.xenproject.org/xsa/advisory-481.html
af854a3a-2127-422b-91ae-364da2661108 http://www.openwall.com/lists/oss-security/2026/03/17/7
af854a3a-2127-422b-91ae-364da2661108 http://xenbits.xen.org/xsa/advisory-481.html

Match rules

CPE URI Source package Min version Max version
cpe:2.3:o:xen:xen:*:*:*:*:*:*:x86:* xen >= 4.18.0 <= None

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
xen edge-main 4.21.1-r3 Natanael Copa <ncopa@alpinelinux.org> fixed
xen edge-main 4.21.1-r2 Natanael Copa <ncopa@alpinelinux.org> fixed
xen edge-main 4.21.1-r1 Natanael Copa <ncopa@alpinelinux.org> fixed
xen edge-main 4.21.1-r0 Natanael Copa <ncopa@alpinelinux.org> fixed
xen edge-main 4.21.0-r3 Natanael Copa <ncopa@alpinelinux.org> fixed
xen edge-main 4.21.0-r2 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.21.0-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.21.0-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.20.2-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.20.1-r2 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.20.1-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.20.1-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.20.0-r2 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.20.0-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.20.0-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.19.2-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.19.1-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.19.1-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.19.0-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.19.0-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.18.2-r2 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.18.2-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.18.2-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.18.0-r5 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.18.0-r4 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.18.0-r3 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.18.0-r2 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.18.0-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen edge-main 4.18.0-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.23-main 4.20.3-r2 Natanael Copa <ncopa@alpinelinux.org> fixed
xen 3.23-main 4.20.3-r1 Natanael Copa <ncopa@alpinelinux.org> fixed
xen 3.23-main 4.20.3-r0 Natanael Copa <ncopa@alpinelinux.org> fixed
xen 3.23-main 4.20.2-r2 Natanael Copa <ncopa@alpinelinux.org> fixed
xen 3.23-main 4.20.2-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.23-main 4.20.2-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.22-main 4.20.3-r2 Natanael Copa <ncopa@alpinelinux.org> fixed
xen 3.22-main 4.20.3-r1 Natanael Copa <ncopa@alpinelinux.org> fixed
xen 3.22-main 4.20.3-r0 Natanael Copa <ncopa@alpinelinux.org> fixed
xen 3.22-main 4.20.2-r2 Natanael Copa <ncopa@alpinelinux.org> fixed
xen 3.22-main 4.20.2-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.22-main 4.20.2-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.22-main 4.20.1-r2 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.22-main 4.20.1-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.22-main 4.20.1-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.22-main 4.20.0-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.22-main 4.19.1-r1 None possibly vulnerable
xen 3.22-main 4.19.0-r1 None possibly vulnerable
xen 3.22-main 4.19.0-r0 None possibly vulnerable
xen 3.22-main 4.18.2-r0 None possibly vulnerable
xen 3.22-main 4.18.0-r5 None possibly vulnerable
xen 3.22-main 4.18.0-r4 None possibly vulnerable
xen 3.22-main 4.18.0-r3 None possibly vulnerable
xen 3.22-main 4.18.0-r2 None possibly vulnerable
xen 3.21-main 4.19.5-r2 Natanael Copa <ncopa@alpinelinux.org> fixed
xen 3.21-main 4.19.5-r1 Natanael Copa <ncopa@alpinelinux.org> fixed
xen 3.21-main 4.19.5-r0 Natanael Copa <ncopa@alpinelinux.org> fixed
xen 3.21-main 4.19.4-r2 Natanael Copa <ncopa@alpinelinux.org> fixed
xen 3.21-main 4.19.4-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.21-main 4.19.4-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.21-main 4.19.3-r2 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.21-main 4.19.3-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.21-main 4.19.3-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.21-main 4.19.2-r2 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.21-main 4.19.2-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.21-main 4.19.2-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.21-main 4.19.1-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.21-main 4.19.0-r1 None possibly vulnerable
xen 3.21-main 4.19.0-r0 None possibly vulnerable
xen 3.21-main 4.18.2-r0 None possibly vulnerable
xen 3.21-main 4.18.0-r5 None possibly vulnerable
xen 3.21-main 4.18.0-r4 None possibly vulnerable
xen 3.21-main 4.18.0-r3 None possibly vulnerable
xen 3.21-main 4.18.0-r2 None possibly vulnerable
xen 3.20-main 4.18.5-r6 Natanael Copa <ncopa@alpinelinux.org> fixed
xen 3.20-main 4.18.5-r5 Natanael Copa <ncopa@alpinelinux.org> fixed
xen 3.20-main 4.18.5-r4 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.20-main 4.18.5-r3 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.20-main 4.18.5-r2 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.20-main 4.18.5-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.20-main 4.18.5-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.20-main 4.18.4-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.20-main 4.18.4-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.20-main 4.18.3-r2 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.20-main 4.18.3-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.20-main 4.18.3-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.20-main 4.18.2-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.20-main 4.18.2-r0 None possibly vulnerable
xen 3.20-main 4.18.0-r5 None possibly vulnerable
xen 3.20-main 4.18.0-r4 None possibly vulnerable
xen 3.20-main 4.18.0-r3 None possibly vulnerable
xen 3.20-main 4.18.0-r2 None possibly vulnerable
xen 3.19-main 4.18.5-r3 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.19-main 4.18.5-r2 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.19-main 4.18.5-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.19-main 4.18.5-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.19-main 4.18.4-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.19-main 4.18.4-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.19-main 4.18.3-r2 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.19-main 4.18.3-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.19-main 4.18.3-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.19-main 4.18.2-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.19-main 4.18.0-r4 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.19-main 4.18.0-r3 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.19-main 4.18.0-r2 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
xen 3.19-main 4.18.0-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable