The OpenXiangShan NEMU has vulnerabilities in Smstateen permission enforcement that allow less-privileged code to access sensitive CSRs, potentially bypassing isolation controls.
Claims
The OpenXiangShan NEMU has vulnerabilities in Smstateen permission enforcement that allow less-privileged code to access sensitive CSRs, potentially bypassing isolation controls.
Parent: CybersecurityEntity: OpenXiangShan NEMUImpact: negativeDate: Apr 20, 2026Target: The effectiveness of Smstateen in enforcing access restrictions in OpenXiangShan NEMU
Source posts
๐จ EUVD-2026-23960
๐ Score: n/a
๐
Updated: 2026-04-20
๐ In OpenXiangShan NEMU, insufficient Smstateen permission enforcement allows lower-privileged code to access IMSIC state via stopei/vstopei CSRs even when mstateen0.IMSIC is cleared, potentially enabling cross-context information leakage or disruption of interrupt handling.
๐ https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-23960
#cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 20, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
๐จ EUVD-2026-23962
๐ Score: n/a
๐
Updated: 2026-04-20
๐ In OpenXiangShan NEMU, when Smstateen is enabled, clearing mstateen0.ENVCFG does not correctly restrict access to henvcfg and senvcfg. As a result, less-privileged code may read or write these CSRs without the required exception, potentially bypassing intended state-enable based isolation controls in virtuali...
๐ https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-23962
#cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 20, 2026
#cybersecurity#infosec#euvd#cve#vulnerability