Citrix

Xen

9 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.1%
  • Published 19.08.2011 20:55:01
  • Last modified 11.04.2025 00:51:21

tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allows local users to cause a denial of service (management software infinite loop and management domain resource consumption) via unspecified vectors related to "Lack of error checking...

  • EPSS 0.52%
  • Published 12.08.2011 18:55:00
  • Last modified 11.04.2025 00:51:21

Multiple integer overflows in tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allow local users to cause a denial of service and possibly execute arbitrary code via a crafted paravirtualised guest kernel image that triggers (1) a buf...

Exploit
  • EPSS 0.62%
  • Published 12.08.2011 18:55:00
  • Last modified 11.04.2025 00:51:21

Xen 4.1 before 4.1.1 and 4.0 before 4.0.2, when using PCI passthrough on Intel VT-d chipsets that do not have interrupt remapping, allows guest OS users to gain host OS privileges by "using DMA to generate MSI interrupts by writing to the interrupt i...

  • EPSS 0.82%
  • Published 25.01.2011 01:00:01
  • Last modified 11.04.2025 00:51:21

The fixup_page_fault function in arch/x86/traps.c in Xen 4.0.1 and earlier on 64-bit platforms, when paravirtualization is enabled, does not verify that kernel mode is used to call the handle_gdt_ldt_mapping_fault function, which allows guest OS user...

Exploit
  • EPSS 0.4%
  • Published 22.01.2011 22:00:03
  • Last modified 11.04.2025 00:51:21

The vbd_create function in Xen 3.1.2, when the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 is used, allows guest OS users to cause a denial of service (host OS panic) via an attempted access to a virtual CD-ROM device through the blkback...

  • EPSS 0.62%
  • Published 11.01.2011 03:00:04
  • Last modified 11.04.2025 00:51:21

The do_block_io_op function in (1) drivers/xen/blkback/blkback.c and (2) drivers/xen/blktap/blktap.c in Xen before 3.4.0 for the Linux kernel 2.6.18, and possibly other versions, allows guest OS users to cause a denial of service (infinite loop and C...

  • EPSS 0.43%
  • Published 08.12.2010 20:00:01
  • Last modified 11.04.2025 00:51:21

The backend driver in Xen 3.x allows guest OS users to cause a denial of service via a kernel thread leak, which prevents the device and guest OS from being shut down or create a zombie domain, causes a hang in zenwatch, or prevents unspecified xm co...

  • EPSS 0.06%
  • Published 24.12.2008 18:29:15
  • Last modified 09.04.2025 00:30:58

xend in Xen 3.3.0 does not properly restrict a guest VM's write access within the /local/domain xenstore directory tree, which allows guest OS users to cause a denial of service and possibly have unspecified other impact by writing to (1) console/tty...

Exploit
  • EPSS 0.83%
  • Published 03.10.2008 17:41:40
  • Last modified 09.04.2025 00:30:58

xend in Xen 3.0.3 does not properly limit the contents of the /local/domain xenstore directory tree, and does not properly restrict a guest VM's write access within this tree, which allows guest OS users to cause a denial of service and possibly have...