CVE-2026-62432

Summary

The EVTCHNOP_expand_array hypercall checks for whether FIFO event channels are enabled, but without holding the correct lock. It can race with EVTCHNOP_reset, resulting in dereferencing a NULL pointer.

Affected Software

VendorProductVersion RangeStatus
XenXenconsult Xen advisory XSA-505unknown

Weaknesses

Workarounds

There are no mitigations.

ADP Enrichment

CVE Program Container

Additional References

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: partial

References