PT-2008-6958 · Suse+2 · Suse Linux Enterprise+2
Marcus Meissner
·
Publicado
1970-01-01
·
Atualizado
2017-09-29
·
CVE-2009-1758
CVSS v2.0
7.8
Alta
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
SUSE Linux Enterprise kernel-pae-base (affected versions not specified)
SUSE Linux Enterprise kernel-xen-extra (affected versions not specified)
SUSE Linux Enterprise kernel-default-base (affected versions not specified)
SUSE Linux Enterprise kernel-kdump-debugsource (affected versions not specified)
SUSE Linux Enterprise kernel-default-debugsource (affected versions not specified)
SUSE Linux Enterprise kernel-pae (affected versions not specified)
SUSE Linux Enterprise kernel-default-extra (affected versions not specified)
SUSE Linux Enterprise ocfs2-kmp-pae (affected versions not specified)
SUSE Linux Enterprise ext4dev-kmp-default (affected versions not specified)
SUSE Linux Enterprise kernel-xen-base (affected versions not specified)
SUSE Linux Enterprise cluster-network-kmp-pae (affected versions not specified)
SUSE Linux Enterprise kexec-tools-debuginfo (affected versions not specified)
SUSE Linux Enterprise ocfs2-kmp-xen (affected versions not specified)
SUSE Linux Enterprise kernel-ec2 (affected versions not specified)
SUSE Linux Enterprise kernel-ppc64-base (affected versions not specified)
SUSE Linux Enterprise kernel-pae-extra (affected versions not specified)
SUSE Linux Enterprise ocfs2-kmp-default (affected versions not specified)
SUSE Linux Enterprise cluster-network-kmp-xen (affected versions not specified)
SUSE Linux Enterprise kernel-ppc64-debugsource (affected versions not specified)
SUSE Linux Enterprise ext4dev-kmp-ppc64 (affected versions not specified)
SUSE Linux Enterprise kernel-ec2-base (affected versions not specified)
SUSE Linux Enterprise cluster-network-kmp-default (affected versions not specified)
Description
The issue is related to multiple vulnerabilities in various packages of the SUSE Linux Enterprise operating system. These vulnerabilities can be exploited remotely and may lead to a denial of service, causing disruption to the availability of protected information. The
hypervisor callback function in Xen is also affected, allowing guest user applications to cause a denial of service of the guest OS by triggering a segmentation fault in certain address ranges.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
DoS
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Red Hat
Suse Linux Enterprise
Xen