PT-2008-6958 · Suse+2 · Suse Linux Enterprise+2

Marcus Meissner

·

Published

1970-01-01

·

Updated

2017-09-29

·

CVE-2009-1758

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions SUSE Linux Enterprise kernel-pae-base (affected versions not specified) SUSE Linux Enterprise kernel-xen-extra (affected versions not specified) SUSE Linux Enterprise kernel-default-base (affected versions not specified) SUSE Linux Enterprise kernel-kdump-debugsource (affected versions not specified) SUSE Linux Enterprise kernel-default-debugsource (affected versions not specified) SUSE Linux Enterprise kernel-pae (affected versions not specified) SUSE Linux Enterprise kernel-default-extra (affected versions not specified) SUSE Linux Enterprise ocfs2-kmp-pae (affected versions not specified) SUSE Linux Enterprise ext4dev-kmp-default (affected versions not specified) SUSE Linux Enterprise kernel-xen-base (affected versions not specified) SUSE Linux Enterprise cluster-network-kmp-pae (affected versions not specified) SUSE Linux Enterprise kexec-tools-debuginfo (affected versions not specified) SUSE Linux Enterprise ocfs2-kmp-xen (affected versions not specified) SUSE Linux Enterprise kernel-ec2 (affected versions not specified) SUSE Linux Enterprise kernel-ppc64-base (affected versions not specified) SUSE Linux Enterprise kernel-pae-extra (affected versions not specified) SUSE Linux Enterprise ocfs2-kmp-default (affected versions not specified) SUSE Linux Enterprise cluster-network-kmp-xen (affected versions not specified) SUSE Linux Enterprise kernel-ppc64-debugsource (affected versions not specified) SUSE Linux Enterprise ext4dev-kmp-ppc64 (affected versions not specified) SUSE Linux Enterprise kernel-ec2-base (affected versions not specified) SUSE Linux Enterprise cluster-network-kmp-default (affected versions not specified)
Description The issue is related to multiple vulnerabilities in various packages of the SUSE Linux Enterprise operating system. These vulnerabilities can be exploited remotely and may lead to a denial of service, causing disruption to the availability of protected information. The hypervisor callback function in Xen is also affected, allowing guest user applications to cause a denial of service of the guest OS by triggering a segmentation fault in certain address ranges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-04245
BDU:2015-04246
BDU:2015-04247
BDU:2015-04248
BDU:2015-04249
BDU:2015-04250
BDU:2015-04251
BDU:2015-04252
BDU:2015-04253
BDU:2015-04254
BDU:2015-04255
BDU:2015-04256
BDU:2015-04257
BDU:2015-04258
BDU:2015-04259
BDU:2015-04260
BDU:2015-04261
BDU:2015-04262
BDU:2015-04263
BDU:2015-04264
BDU:2015-04265
BDU:2015-04266
CVE-2009-1758
DSA-1809-1
RHSA-2009:1106
RHSA-2009:1132
RHSA-2009_1106
RHSA-2009_1132

Affected Products

Red Hat
Suse Linux Enterprise
Xen