PT-2013-3532 · Xen+1 · Xen+1

Publicado

2013-07-01

·

Atualizado

2014-12-12

·

CVE-2013-2078

CVSS v2.0

4.7

Média

VetorAV:L/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Xen versions 4.0.2 through 4.0.4 Xen versions 4.1.x Xen versions 4.2.x
Description The issue allows local PV guest users to cause a denial of service, resulting in a hypervisor crash, by using certain bit combinations with the XSETBV instruction.
Recommendations For Xen versions 4.0.2 through 4.0.4, update to a version that includes the fix for this issue. For Xen versions 4.1.x, update to a version that includes the fix for this issue. For Xen versions 4.2.x, update to a version that includes the fix for this issue.

Correção

DoS

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2013-2078
DSA-3006-1
MGASA-2013-0197

Produtos afetados

Suse
Xen