CVE-2024-2201: Xen

Medium severity, CVSS 4.7. EPSS: 8.8% chance of exploitation in the next 30 days.

A cross-privilege Spectre v2 vulnerability allows attackers to bypass all deployed mitigations, including the recent Fine(IBT), and to leak arbitrary Linux kernel memory on Intel systems.

Affected products

Published 2024-12-19. Last modified 2026-06-17.