[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2025-27466":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T08:53:30.047Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":19,"aliases":20,"duplicate_of":9,"upstream":21,"downstream":22,"duplicates":47,"related":48,"reserved_at":9,"published_at":57,"modified_at":58,"state":59,"summary":60,"references_raw":69,"kevs":84,"epss":85,"epss_history":88,"metrics":360,"affected":367},"CVE-2025-27466","[This CNA information record relates to multiple CVEs; the\ntext explains which aspects/vulnerabilities correspond to which CVE.]\n\nThere are multiple issues related to the handling and accessing of guest\nmemory pages in the viridian code:\n\n 1. A NULL pointer dereference in the updating of the reference TSC area.\n    This is CVE-2025-27466.\n\n 2. A NULL pointer dereference by assuming the SIM page is mapped when\n    a synthetic timer message has to be delivered.  This is\n    CVE-2025-58142.\n\n 3. A race in the mapping of the reference TSC page, where a guest can\n    get Xen to free a page while still present in the guest physical to\n    machine (p2m) page tables.  This is CVE-2025-58143.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-395","Use of NullPointerException Catch to Detect NULL Pointer Dereference","Catching NullPointerException should not be used as an alternative to programmatic checks to prevent dereferencing a null pointer.","weakness","Draft","Base",[],[],[],[],[23,25,27,29,31,33,35,37,39,41,43,45],{"_key":24},"ALPINE-CVE-2025-27466",{"_key":26},"DSA-6068-1",{"_key":28},"SUSE-SU-2025:3797-1",{"_key":30},"SUSE-SU-2025:3798-1",{"_key":32},"SUSE-SU-2025:03172-1",{"_key":34},"SUSE-SU-2025:3843-1",{"_key":36},"SUSE-SU-2026:0303-1",{"_key":38},"SUSE-SU-2026:0012-1",{"_key":40},"OPENSUSE-SU-2025:15547-1",{"_key":42},"MGASA-2025-0270",{"_key":44},"DEBIAN-CVE-2025-27466",{"_key":46},"UBUNTU-CVE-2025-27466",[],[49,50,51,52,53,54,55,56],{"_key":28},{"_key":30},{"_key":32},{"_key":34},{"_key":36},{"_key":38},{"_key":40},{"_key":42},"2025-09-11T14:05:29.525Z","2025-11-04T21:09:51.419Z","Modified",{"cisa_kev":61,"cisa_ransomware":61,"cisa_vendor":9,"epss_severity":62,"epss_score":63,"severity":64,"severity_score":65,"severity_version":66,"severity_source":67,"severity_vector":68,"severity_status":59},false,"low",0.0004,"critical",9.8,"v3.1","cve.org","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",[70,76,80],{"url":71,"sources":72,"tags":74},"https://xenbits.xenproject.org/xsa/advisory-472.html",[67,73],"nvd",[75],"Vendor Advisory",{"url":77,"sources":78,"tags":79},"http://xenbits.xen.org/xsa/advisory-472.html",[67,73],[],{"url":81,"sources":82,"tags":83},"http://www.openwall.com/lists/oss-security/2025/09/09/1",[67,73],[],[],{"date":86,"score":63,"percentile":87},"2026-06-03",0.12479,[89,93,97,100,103,106,109,112,115,118,121,124,127,130,133,137,140,143,146,149,152,155,158,161,164,167,170,173,176,179,182,185,188,191,194,197,200,203,206,209,212,215,218,221,224,227,230,233,236,239,242,245,248,251,254,257,260,263,266,269,272,275,278,281,284,287,289,292,295,299,302,305,308,311,314,317,319,322,325,328,331,333,336,339,342,345,348,351,354,357],{"date":90,"score":91,"percentile":92},"2025-11-04",0.00065,0.20255,{"date":94,"score":95,"percentile":96},"2025-11-05",0.00061,0.19144,{"date":98,"score":95,"percentile":99},"2025-11-06",0.19153,{"date":101,"score":95,"percentile":102},"2025-11-07",0.19165,{"date":104,"score":95,"percentile":105},"2025-11-08",0.19167,{"date":107,"score":95,"percentile":108},"2025-11-09",0.19141,{"date":110,"score":95,"percentile":111},"2025-11-10",0.19097,{"date":113,"score":95,"percentile":114},"2025-11-11",0.19102,{"date":116,"score":95,"percentile":117},"2025-11-12",0.19145,{"date":119,"score":95,"percentile":120},"2025-11-13",0.19173,{"date":122,"score":95,"percentile":123},"2025-11-14",0.19166,{"date":125,"score":95,"percentile":126},"2025-11-15",0.19142,{"date":128,"score":95,"percentile":129},"2025-11-16",0.19099,{"date":131,"score":95,"percentile":132},"2025-11-17",0.19024,{"date":134,"score":135,"percentile":136},"2025-11-18",0.00064,0.1559,{"date":138,"score":135,"percentile":139},"2025-11-19",0.15602,{"date":141,"score":135,"percentile":142},"2025-11-20",0.15583,{"date":144,"score":135,"percentile":145},"2025-11-21",0.19805,{"date":147,"score":135,"percentile":148},"2025-11-22",0.19804,{"date":150,"score":135,"percentile":151},"2025-11-23",0.19777,{"date":153,"score":135,"percentile":154},"2025-11-24",0.19754,{"date":156,"score":135,"percentile":157},"2025-11-25",0.19744,{"date":159,"score":135,"percentile":160},"2025-11-26",0.19737,{"date":162,"score":135,"percentile":163},"2025-11-27",0.19736,{"date":165,"score":135,"percentile":166},"2025-11-28",0.19722,{"date":168,"score":135,"percentile":169},"2025-11-29",0.19708,{"date":171,"score":135,"percentile":172},"2025-11-30",0.19712,{"date":174,"score":135,"percentile":175},"2025-12-01",0.19758,{"date":177,"score":135,"percentile":178},"2025-12-02",0.19782,{"date":180,"score":135,"percentile":181},"2025-12-03",0.19799,{"date":183,"score":135,"percentile":184},"2025-12-04",0.19755,{"date":186,"score":135,"percentile":187},"2025-12-05",0.19802,{"date":189,"score":135,"percentile":190},"2025-12-06",0.19806,{"date":192,"score":135,"percentile":193},"2025-12-07",0.19796,{"date":195,"score":135,"percentile":196},"2025-12-08",0.19816,{"date":198,"score":135,"percentile":199},"2025-12-09",0.19884,{"date":201,"score":135,"percentile":202},"2025-12-10",0.19953,{"date":204,"score":135,"percentile":205},"2025-12-11",0.19989,{"date":207,"score":135,"percentile":208},"2025-12-12",0.20018,{"date":210,"score":135,"percentile":211},"2025-12-13",0.20027,{"date":213,"score":135,"percentile":214},"2025-12-14",0.19971,{"date":216,"score":135,"percentile":217},"2025-12-15",0.1995,{"date":219,"score":135,"percentile":220},"2025-12-16",0.19985,{"date":222,"score":135,"percentile":223},"2025-12-17",0.20066,{"date":225,"score":135,"percentile":226},"2025-12-18",0.20154,{"date":228,"score":135,"percentile":229},"2025-12-19",0.20176,{"date":231,"score":135,"percentile":232},"2025-12-20",0.20147,{"date":234,"score":135,"percentile":235},"2025-12-21",0.20096,{"date":237,"score":135,"percentile":238},"2025-12-22",0.20058,{"date":240,"score":135,"percentile":241},"2025-12-23",0.20061,{"date":243,"score":135,"percentile":244},"2025-12-24",0.20098,{"date":246,"score":135,"percentile":247},"2025-12-25",0.20179,{"date":249,"score":135,"percentile":250},"2025-12-26",0.20171,{"date":252,"score":135,"percentile":253},"2025-12-27",0.20168,{"date":255,"score":135,"percentile":256},"2025-12-28",0.20127,{"date":258,"score":135,"percentile":259},"2025-12-29",0.2008,{"date":261,"score":135,"percentile":262},"2025-12-30",0.20068,{"date":264,"score":135,"percentile":265},"2025-12-31",0.20124,{"date":267,"score":135,"percentile":268},"2026-01-01",0.20221,{"date":270,"score":135,"percentile":271},"2026-01-02",0.20224,{"date":273,"score":135,"percentile":274},"2026-01-03",0.20205,{"date":276,"score":135,"percentile":277},"2026-01-04",0.20115,{"date":279,"score":135,"percentile":280},"2026-01-05",0.20094,{"date":282,"score":135,"percentile":283},"2026-01-06",0.20107,{"date":285,"score":135,"percentile":286},"2026-01-07",0.20134,{"date":288,"score":135,"percentile":247},"2026-01-08",{"date":290,"score":135,"percentile":291},"2026-01-09",0.20174,{"date":293,"score":135,"percentile":294},"2026-01-10",0.20178,{"date":296,"score":297,"percentile":298},"2026-01-11",0.00082,0.24514,{"date":300,"score":297,"percentile":301},"2026-01-12",0.24479,{"date":303,"score":297,"percentile":304},"2026-01-13",0.24456,{"date":306,"score":297,"percentile":307},"2026-01-14",0.24518,{"date":309,"score":297,"percentile":310},"2026-01-15",0.2451,{"date":312,"score":297,"percentile":313},"2026-01-16",0.24539,{"date":315,"score":297,"percentile":316},"2026-01-17",0.2454,{"date":318,"score":297,"percentile":298},"2026-01-18",{"date":320,"score":297,"percentile":321},"2026-01-19",0.24471,{"date":323,"score":297,"percentile":324},"2026-01-20",0.24454,{"date":326,"score":297,"percentile":327},"2026-01-21",0.24404,{"date":329,"score":297,"percentile":330},"2026-01-22",0.24388,{"date":332,"score":297,"percentile":321},"2026-01-23",{"date":334,"score":297,"percentile":335},"2026-01-24",0.24478,{"date":337,"score":297,"percentile":338},"2026-01-25",0.24397,{"date":340,"score":297,"percentile":341},"2026-01-26",0.24298,{"date":343,"score":297,"percentile":344},"2026-01-27",0.24292,{"date":346,"score":297,"percentile":347},"2026-01-28",0.24286,{"date":349,"score":297,"percentile":350},"2026-01-29",0.24241,{"date":352,"score":297,"percentile":353},"2026-01-30",0.24226,{"date":355,"score":297,"percentile":356},"2026-01-31",0.24221,{"date":358,"score":297,"percentile":359},"2026-02-01",0.24268,[361,365],{"source":67,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":362,"cvss_v4_0":9},{"baseScore":65,"baseSeverity":363,"vectorString":68,"impactScore":65,"exploitabilityScore":364},"CRITICAL",10,{"source":73,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":366,"cvss_v4_0":9},{"baseScore":65,"baseSeverity":363,"vectorString":68,"impactScore":65,"exploitabilityScore":364},[368],{"ecosystem":9,"name":369,"vendor":369,"product":369,"cpe_part":370,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":371},"xen","o",[372],{"version":373,"is_range":374,"range_type":375,"version_start":376,"version_start_type":377,"version_end":378,"version_end_type":379,"fixed_in":9},"gte4.13.0_lt4.17.0",true,"cpe","4.13.0","including","4.17.0","excluding"]