Xen

Xen

479 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.36%
  • Veröffentlicht 28.08.2013 21:55:08
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Buffer overflow in the Python bindings for the xc_vcpu_setaffinity call in Xen 4.0.x, 4.1.x, and 4.2.x allows local administrators with permissions to configure VCPU affinity to cause a denial of service (memory corruption and xend toolstack crash) a...

  • EPSS 0.18%
  • Veröffentlicht 28.08.2013 21:55:08
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Xen 4.0.x, 4.1.x, and 4.2.x, when running on AMD64 processors, only save/restore the FOP, FIP, and FDP x87 registers in FXSAVE/FXRSTOR when an exception is pending, which allows one domain to determine portions of the state of floating point instruct...

  • EPSS 0.12%
  • Veröffentlicht 28.08.2013 21:55:08
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Xen 4.0.x, 4.1.x, and 4.2.x does not properly restrict the contents of a XRSTOR, which allows local PV guest users to cause a denial of service (unhandled exception and hypervisor crash) via unspecified vectors.

  • EPSS 0.23%
  • Veröffentlicht 28.08.2013 21:55:08
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The libxenlight (libxl) toolstack library in Xen 4.0.x, 4.1.x, and 4.2.x uses weak permissions for xenstore keys for paravirtualised and emulated serial console devices, which allows local guest administrators to modify the xenstore value via unspeci...

  • EPSS 0.18%
  • Veröffentlicht 28.08.2013 21:55:08
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The vmx_set_uc_mode function in Xen 3.3 through 4.3, when disabling caches, allows local HVM guests with access to memory mapped I/O regions to cause a denial of service (CPU consumption and possibly hypervisor or guest kernel panic) via a crafted GF...

  • EPSS 0.08%
  • Veröffentlicht 28.08.2013 21:55:08
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Intel VT-d Interrupt Remapping engine in Xen 3.3.x through 4.3.x allows local guests to cause a denial of service (kernel panic) via a malformed Message Signaled Interrupt (MSI) from a PCI device that is bus mastering capable that triggers a Syst...

  • EPSS 0.04%
  • Veröffentlicht 23.08.2013 16:55:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple integer overflows in the Elf parser (libelf) in Xen 4.2.x and earlier allow local guest administrators with certain permissions to have an unspecified impact via a crafted kernel.

  • EPSS 0.04%
  • Veröffentlicht 23.08.2013 16:55:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Elf parser (libelf) in Xen 4.2.x and earlier allow local guest administrators with certain permissions to have an unspecified impact via a crafted kernel, related to "pointer dereferences" involving unexpected calculations.

  • EPSS 0.04%
  • Veröffentlicht 23.08.2013 16:55:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple unspecified vulnerabilities in the Elf parser (libelf) in Xen 4.2.x and earlier allow local guest administrators with certain permissions to have an unspecified impact via a crafted kernel, related to "other problems" that are not CVE-2013-2...

  • EPSS 0.06%
  • Veröffentlicht 14.08.2013 15:55:06
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Xen 4.0.2 through 4.0.4, 4.1.x, and 4.2.x allows local PV guest users to cause a denial of service (hypervisor crash) via certain bit combinations to the XSETBV instruction.