CVE-2024-45817: Deadlock Flaw in XenServer and Citrix Hypervisor

Amber | Vulnerability Report

Citrix has addressed vulnerabilities in XenServer 8 and Citrix Hypervisor 8.2 CU1 LTSR, including CVE-2024-45817, which allows malicious administrators of guest VMs to crash or render the host unresponsive. Two additional issues can impact the SNMP service of XenServer 8. Patches and a hotfix (XS82ECU1077) have been released to address these issues, and applying these updates is essential to mitigate risks.

Reduce real exposure. Not just vulnerability volume.