CVE-2022-23033
NixOS vulnerability analysis and mitigation

Overview

CVE-2022-23033 is a vulnerability in the Xen hypervisor that affects ARM systems running Xen version 4.12 and newer. The vulnerability was discovered by Dmytro Firsov of EPAM and publicly disclosed on January 25, 2022. The issue involves functions that remove entries from a guest p2m pagetable on ARM systems failing to properly clear pagetable entries when the valid bit is not set (Xen Advisory).

Technical details

The vulnerability exists in several ARM-specific functions (p2mremovemapping, guestphysmapremovepage, and p2msetentry with mfn set to INVALIDMFN) that handle guest pagetable entry removal. These functions fail to clear pagetable entries when the valid bit is not set. This condition can occur when a guest operating system uses set/way cache maintenance instructions. The vulnerability has been assigned a CVSS v3.1 base score of 7.8 (HIGH) with vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H (NVD).

Impact

A malicious guest may be able to access Xen and other domains' memory through this vulnerability. The potential impacts include information leaks, host or domain Denial of Service (DoS), and privilege escalations. For example, a guest could issue a set/way cache maintenance instruction followed by a XENMEMdecreasereservation hypercall to retain access to memory pages even after Xen has reallocated them for other purposes (Xen Advisory).

Mitigation and workarounds

There was no known mitigation available at the time of disclosure. The recommended solution is to apply the security patch provided by the Xen Project. Distribution vendors have released updated packages to address this vulnerability, including Debian (version 4.14.4+74-gd7b22226b5-1), Fedora (xen-4.14.4-1.fc34), and Gentoo (Debian Advisory, Fedora Update, Gentoo Advisory).

Additional resources


SourceThis report was generated using AI

Related NixOS vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-61619HIGH7.5
  • NixOSNixOS
  • android
NoNoDec 01, 2025
CVE-2025-61618HIGH7.5
  • NixOSNixOS
  • android
NoNoDec 01, 2025
CVE-2025-61617HIGH7.5
  • NixOSNixOS
  • android
NoNoDec 01, 2025
CVE-2025-61610HIGH7.5
  • NixOSNixOS
  • android
NoNoDec 01, 2025
CVE-2025-65622MEDIUM5.4
  • PHPPHP
  • snipe-it
NoYesDec 01, 2025

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management