Impact
The vulnerability arises when a Xen hypervisor cleans up PCI devices and associated IRQ tracking structures for a terminating guest. The device model (DM) can re-bind these IRQs shortly after the cleanup, causing some tracking structures to remain unreleased., potentially destabilizing the host. This race condition is identified as CWE‑362.
Affected Systems
is released by the Xen project. The issue applies to any guest that uses device models.
Risk and Exploitability
The CVSS score of 6.5 indicates a moderate severity. The EPSS score is less than 1%, suggesting a low exploitation probability, and the vulnerability is not listed in CISA KEV. The memory leak could lead to resource exhaustion if repeatedly triggered by repeated guest terminations, potentially destabilizing the host.
OpenCVE Enrichment