8.8

CVE-2020-11741

An issue was discovered in xenoprof in Xen through 4.13.x, allowing guest OS users (with active profiling) to obtain sensitive information about other guests, cause a denial of service, or possibly gain privileges. For guests for which "active" profiling was enabled by the administrator, the xenoprof code uses the standard Xen shared ring structure. Unfortunately, this code did not treat the guest as a potential adversary: it trusts the guest not to modify buffer size information or modify head / tail pointers in unexpected ways. This can crash the host (DoS). Privilege escalation cannot be ruled out.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Xen ≫ Xen Version <= 4.13.0
Xen ≫ Xen Version 4.13.0 Update rc1
Xen ≫ Xen Version 4.13.0 Update rc2
Fedoraproject ≫ Fedora Version 30
Fedoraproject ≫ Fedora Version 31
Fedoraproject ≫ Fedora Version 32
Debian ≫ Debian Linux Version 10.0
Opensuse ≫ Leap Version 15.1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.42% 0.337
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 8.8 2 6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
NIST 6.9 3.4 10
AV:L/AC:M/Au:N/C:C/I:C/A:C
CWE-909 Missing Initialization of Resource

The product does not initialize a critical resource.

http://lists.opensuse.org/opensuse-security-announce/2020-05/msg00006.html
Third Party Advisory
Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5M2XRNCHOGGTJQBZQJ7DCV6ZNAKN3LE2/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NVTP4OYHCTRU3ONFJOFJQVNDFB25KLLG/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YMAW7D2MP6RE4BFI5BZWOBBWGY3VSOFN/
https://security.gentoo.org/glsa/202005-08
Third Party Advisory
https://www.debian.org/security/2020/dsa-4723
Third Party Advisory
http://www.openwall.com/lists/oss-security/2020/04/14/1
Patch
Third Party Advisory
Mailing List
http://xenbits.xen.org/xsa/advisory-313.html
Patch
Vendor Advisory
https://xenbits.xen.org/xsa/advisory-313.html
Patch
Vendor Advisory