Vulnerability in Grant Table Switching of Xen Project Products
CVE-2026-62436

Currently unrated

Key Information:

Vendor
CVE Published:
28 July 2026

What is CVE-2026-62436?

This vulnerability arises from the handling of grant table version switching in the Xen Hypervisor. When transitioning between v1 and v2 of the Grant Table, there are complications that affect the management of grant references and locks. Specifically, the code may incorrectly assume that properties related to the grant table will remain unchanged during the time the lock is not held. The resultant issues can lead to potential inconsistencies, affecting the stability and security of the Xen Hypervisor environment.

Affected Version(s)

Xen consult Xen advisory XSA-501

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

This issue was discovered by Mark Esler.
.