PT-2013-1400 · Xen+1 · Xen+1

Published

2011-09-06

·

Updated

2023-02-13

·

CVE-2011-2901

CVSS v2.0

5.5

Medium

VectorAV:A/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Xen versions 3.3 and earlier
Description The issue is related to an off-by-one error in the addr ok macro, which can be exploited by local 64-bit PV guest administrators to cause a denial of service, resulting in a host crash. This can be achieved through unspecified hypercalls that ignore virtual-address bits.
Recommendations For Xen versions 3.3 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Weakness Enumeration

Related Identifiers

CVE-2011-2901
RHSA-2011:1212
RHSA-2011:1813
RHSA-2011_1212

Affected Products

Red Hat
Xen