PT-2008-6958 · Suse+2 · Suse Linux Enterprise+2
Marcus Meissner
·
Published
1970-01-01
·
Updated
2017-09-29
·
CVE-2009-1758
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
SUSE Linux Enterprise kernel-pae-base (affected versions not specified)
SUSE Linux Enterprise kernel-xen-extra (affected versions not specified)
SUSE Linux Enterprise kernel-default-base (affected versions not specified)
SUSE Linux Enterprise kernel-kdump-debugsource (affected versions not specified)
SUSE Linux Enterprise kernel-default-debugsource (affected versions not specified)
SUSE Linux Enterprise kernel-pae (affected versions not specified)
SUSE Linux Enterprise kernel-default-extra (affected versions not specified)
SUSE Linux Enterprise ocfs2-kmp-pae (affected versions not specified)
SUSE Linux Enterprise ext4dev-kmp-default (affected versions not specified)
SUSE Linux Enterprise kernel-xen-base (affected versions not specified)
SUSE Linux Enterprise cluster-network-kmp-pae (affected versions not specified)
SUSE Linux Enterprise kexec-tools-debuginfo (affected versions not specified)
SUSE Linux Enterprise ocfs2-kmp-xen (affected versions not specified)
SUSE Linux Enterprise kernel-ec2 (affected versions not specified)
SUSE Linux Enterprise kernel-ppc64-base (affected versions not specified)
SUSE Linux Enterprise kernel-pae-extra (affected versions not specified)
SUSE Linux Enterprise ocfs2-kmp-default (affected versions not specified)
SUSE Linux Enterprise cluster-network-kmp-xen (affected versions not specified)
SUSE Linux Enterprise kernel-ppc64-debugsource (affected versions not specified)
SUSE Linux Enterprise ext4dev-kmp-ppc64 (affected versions not specified)
SUSE Linux Enterprise kernel-ec2-base (affected versions not specified)
SUSE Linux Enterprise cluster-network-kmp-default (affected versions not specified)
Description
The issue is related to multiple vulnerabilities in various packages of the SUSE Linux Enterprise operating system. These vulnerabilities can be exploited remotely and may lead to a denial of service, causing disruption to the availability of protected information. The
hypervisor callback function in Xen is also affected, allowing guest user applications to cause a denial of service of the guest OS by triggering a segmentation fault in certain address ranges.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Red Hat
Suse Linux Enterprise
Xen