CVE-2024-31142

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-31142
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-31142.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-31142
Downstream
Related
Published
2024-05-16T14:15:08Z
Modified
2025-08-09T20:01:27Z
Summary
[none]
Details

Because of a logical error in XSA-407 (Branch Type Confusion), the mitigation is not applied properly when it is intended to be used. XSA-434 (Speculative Return Stack Overflow) uses the same infrastructure, so is equally impacted.

For more details, see: https://xenbits.xen.org/xsa/advisory-407.html https://xenbits.xen.org/xsa/advisory-434.html

References

Affected packages