Loading HuntDB...

GHSA-g7qc-r5p9-r36r

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

Because of a logical error in XSA-407 (Branch Type Confusion), the
mitigation is not applied properly when it is intended to be used.
XSA-434 (Speculative Return Stack Overflow) uses the same
infrastructure, so is equally impacted.

For more details, see:
https://xenbits.xen.org/xsa/advisory-407.html
https://xenbits.xen.org/xsa/advisory-434.html

Related CVEs

Key Information

GHSA ID
GHSA-g7qc-r5p9-r36r
Published
May 16, 2024 3:31 PM
Last Modified
March 27, 2025 9:31 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 14, 2025 6:31 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.