PT-2025-44620 · Libxl+1 · Libxl+1

Jiqian Chen

·

Published

2025-10-31

·

Updated

2026-02-05

·

CVE-2025-58149

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions libxl (affected versions not specified)
Description The detach logic in libxl does not remove access permissions to 64-bit memory BARs when passing through PCI devices. This can allow a domain to retain access to these memory BARs even after the device is no longer assigned to the domain. For Privileged Virtual (PV) domains, this permission leak allows the domain to map the memory in page tables. For Hardware Virtual Machine (HVM) domains, exploitation would require a compromised device model or stubdomain to map the leaked memory into the HVM domain’s page map tables.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-58149
DSA-6068-1
MGASA-2025-0270
OPENSUSE-SU-2025:15719-1
SUSE-SU-2025:4419-1
SUSE-SU-2025:4490-1
SUSE-SU-2026:0012-1
SUSE-SU-2026:0303-1
SUSE-SU-2026:0328-1
SUSE-SU-2026:0394-1

Affected Products

Debian
Libxl