Shadow mode tracing code uses a set of per-CPU variables to avoid
cumbersome parameter passing. Some of these variables are written to
with guest controlled data, of guest controllable size. That size can
be larger than the variable, and bounding of the writes was missing.
References
Configurations
No configuration.
History
28 Jan 2026, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-787 | |
| References |
|
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
28 Jan 2026, 16:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-01-28 16:16
Updated : 2026-01-29 16:31
NVD link : CVE-2025-58150
Mitre link : CVE-2025-58150
CVE.ORG link : CVE-2025-58150
JSON object : View
Products Affected
No product.
CWE
CWE-787
Out-of-bounds Write
