CVE-2025-58144 Details
Description
[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] There are two issues related to the mapping of pages belonging to other domains: For one, an assertion is wrong there, where the case actually needs handling. A NULL pointer de-reference could result on a release build. This is CVE-2025-58144. And then the P2M lock isn't held until a page reference was actually obtained (or the attempt to do so has failed). Otherwise the page can not only change type, but even ownership in between, thus allowing domain boundaries to be violated. This is CVE-2025-58145.
A vulnerability in Xen hypervisor on Arm systems, present in versions 4.12 and later, has been identified. This issue arises from improper handling of page references between domains, which can lead to a NULL pointer dereference in release builds. As a result, an unprivileged guest could cause a hypervisor crash, creating a denial-of-service condition for the entire host. While privilege escalation and information leaks cannot be ruled out, x86 systems are not affected.
Applying the patches available in the Xen Security Advisory XSA-473 resolves this vulnerability. Instructions for applying these patches can be found in the advisory.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Sep 11, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| http://www.openwall.com/lists/oss-security/2025/09/09/2 | CVE | |
| http://xenbits.xen.org/xsa/advisory-473.html | CVE | |
| https://xenbits.xenproject.org/xsa/advisory-473.html | [email protected] | Vendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-476 | NULL Pointer Dereference | CISA-ADP |
Affected Products
| Product | Versions |
|---|---|
| xen xen | >= 4.12.0, < 4.17.0 |
CPE
Remediation
| |
Change History
7 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Nov 4, 2025 | CVE Modified | CVE |
| Nov 3, 2025 | CVE Modified | CVE |
| Sep 24, 2025 | Initial Analysis | [email protected] |
| Sep 11, 2025 | CVE Modified | CISA-ADP |
| Sep 11, 2025 | New CVE Received | [email protected] |