Openxiangshan

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 10
    Known Exploited: 0
    2
    Critical Level Threats
    5
    High Level Threats
    3
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-29644

    Improper CSR Write Gating Enables Unauthorized PMA Modification in XiangShan RISC‑V Processor

    Last Modified: Apr 22, 2026
    Published: Apr 21, 2026

    CVE-2026-29647

    OpenXiangShan NEMU Cross-Context IMSIC State Leakage

    Last Modified: Apr 28, 2026
    Published: Apr 20, 2026

    CVE-2026-29649

    NEMU contains an implementation flaw in its RISC-V Hypervisor CSR handling where henvcfg[7:4] (CBIE/CBCFE/CBZE-related fields) is incorrectly masked/updated based on menvcfg[7:4], so a machine-mode write to menvcfg can implicitly modify the hypervisor's environment configuration. This can lead to incorrect enforcement of virtualization configuration and may cause unexpected traps or denial of service when executing cache-block management instructions in virtualized contexts (V=1).

    Last Modified: Apr 28, 2026
    Published: Apr 20, 2026

    CVE-2026-29642

    Privilege Escalation via Status Register Tampering on XiangShan RISC‑V Processors

    Last Modified: Apr 22, 2026
    Published: Apr 20, 2026

    CVE-2026-29643

    Improper Exception Handling in XiangShan CSR Subsystem Allows Local Denial of Service

    Last Modified: Apr 22, 2026
    Published: Apr 20, 2026
    Items Per Page
    Openxiangshan Vulnerabilities & Security CVEs | CVE-DB