Description

Because of a logical error in XSA-407 (Branch Type Confusion), the mitigation is not applied properly when it is intended to be used. XSA-434 (Speculative Return Stack Overflow) uses the same infrastructure, so is equally impacted. For more details, see: https://xenbits.xen.org/xsa/advisory-407.html https://xenbits.xen.org/xsa/advisory-434.html

INFO

Published Date :

2024-05-16T13:39:42.774Z

Last Modified :

2025-11-04T18:30:46.936Z

Source :

XEN
AFFECTED PRODUCTS

The following products are affected by CVE-2024-31142 vulnerability.

Vendors Products
Fedoraproject
  • Fedora
Xen
  • Xen

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact