Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Fedora 44 Xen 4.21.1 Release Advisory XSA-480 DoS CVE-2026-23554

fedora
Calendar Grey March 31, 2026
Dist Fedora Esm H88
The update to Xen 4.21.1 resolves use after free and DoS vulnerabilities in Fedora 44, enhancing system security and stability
update to xen 4.21.1 Use after free of paging structures in EPT [XSA-480, CVE-2026-23554] Xenstored DoS by unprivileged domain [XSA-481, CVE-2026-23555]

Summary

This package contains the XenD daemon and xm command line

tools, needed to manage virtual machines running under the

Xen hypervisor

Update Information:

update to xen 4.21.1 Use after free of paging structures in EPT [XSA-480, CVE-2026-23554] Xenstored DoS by unprivileged domain [XSA-481, CVE-2026-23555]

Change Log

* Thu Mar 26 2026 Michael Young - 4.21.1-1 - update to xen 4.21.0 remove patches now included or superceded upstream * Tue Mar 17 2026 Michael Young - 4.21.0-5 - Use after free of paging structures in EPT [XSA-480, CVE-2026-23554] - Xenstored DoS by unprivileged domain [XSA-481, CVE-2026-23555] * Fri Feb 20 2026 Richard W.M. Jones - 4.21.0-4 - OCaml 5.4.1 rebuild

References


[ 1 ] Bug #2415748 - xen-4.21.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2415748 [ 2 ] Bug #2450273 - CVE-2026-23554 xen: Xen: Information disclosure and potential privilege escalation via use-after-free in EPT paging [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2450273

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-f884fd0313' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: xen
Product: Fedora 44
Version: 4.21.1
Release: 1.fc44
Summary: Xen is a virtual machine monitor

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here