CVE-2023-46839

PCI devices can make use of a functionality called phantom functions, that when enabled allows the device to generate requests using the IDs of functions that are otherwise unpopulated. This allows a device to extend the number of outstanding requests. Such phantom functions need an IOMMU context setup, but failure to setup the context is not fatal when the device is assigned. Not failing device assignment when such failure happens can lead to the primary device being assigned to a guest, while some of the phantom functions are assigned to a different domain.
Configurations

Configuration 1 (hide)

cpe:2.3:o:xen:xen:*:*:*:*:*:*:x86:*

Configuration 2 (hide)

cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:*

History

13 Jan 2026, 15:03

Type Values Removed Values Added
References () https://xenbits.xenproject.org/xsa/advisory-449.html - () https://xenbits.xenproject.org/xsa/advisory-449.html - Patch, Vendor Advisory
References () http://xenbits.xen.org/xsa/advisory-449.html - () http://xenbits.xen.org/xsa/advisory-449.html - Patch, Vendor Advisory
References () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XLL6SQ6IKFYXLYWITYZCRV5IBRK5G35R/ - () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XLL6SQ6IKFYXLYWITYZCRV5IBRK5G35R/ - Mailing List, Third Party Advisory
CPE cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:*
cpe:2.3:o:xen:xen:*:*:*:*:*:*:x86:*
First Time Xen
Fedoraproject fedora
Xen xen
Fedoraproject
CWE NVD-CWE-noinfo

04 Nov 2025, 19:16

Type Values Removed Values Added
References
  • () http://xenbits.xen.org/xsa/advisory-449.html -
  • () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XLL6SQ6IKFYXLYWITYZCRV5IBRK5G35R/ -

21 Nov 2024, 20:15

Type Values Removed Values Added
Summary
  • (es) Los dispositivos PCI pueden hacer uso de una funcionalidad llamada funciones fantasma, que cuando está habilitada permite que el dispositivo genere solicitudes utilizando los identificadores de funciones que de otro modo no estarían completas. Esto permite que un dispositivo extienda la cantidad de solicitudes pendientes. Estas funciones fantasma necesitan una configuración de contexto IOMMU, pero no configurar el contexto no es fatal cuando el dispositivo está asignado. No fallar la asignación del dispositivo cuando ocurre tal falla puede provocar que el dispositivo principal se asigne a un invitado, mientras que algunas de las funciones fantasma se asignan a un dominio diferente.
References () https://xenbits.xenproject.org/xsa/advisory-449.html - () https://xenbits.xenproject.org/xsa/advisory-449.html -
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3

20 Mar 2024, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-20 11:15

Updated : 2026-01-13 15:03


NVD link : CVE-2023-46839

Mitre link : CVE-2023-46839

CVE.ORG link : CVE-2023-46839


JSON object : View

Products Affected

fedoraproject

  • fedora

xen

  • xen