Show filters
99 Total Results
Displaying 41-50 of 99
Sort by:
Attacker Value
Unknown
CVE-2013-4553
Disclosure Date: December 24, 2013 (last updated October 05, 2023)
The XEN_DOMCTL_getmemlist hypercall in Xen 3.4.x through 4.3.x (possibly 4.3.1) does not always obtain the page_alloc_lock and mm_rwlock in the same order, which allows local guest administrators to cause a denial of service (host deadlock).
0
Attacker Value
Unknown
CVE-2013-4554
Disclosure Date: December 24, 2013 (last updated October 05, 2023)
Xen 3.0.3 through 4.1.x (possibly 4.1.6.1), 4.2.x (possibly 4.2.3), and 4.3.x (possibly 4.3.1) does not properly prevent access to hypercalls, which allows local guest users to gain privileges via a crafted application running in ring 1 or 2.
0
Attacker Value
Unknown
CVE-2013-4416
Disclosure Date: November 02, 2013 (last updated October 05, 2023)
The Ocaml xenstored implementation (oxenstored) in Xen 4.1.x, 4.2.x, and 4.3.x allows local guest domains to cause a denial of service (domain shutdown) via a large message reply.
0
Attacker Value
Unknown
CVE-2013-4368
Disclosure Date: October 17, 2013 (last updated October 05, 2023)
The outs instruction emulation in Xen 3.1.x, 4.2.x, 4.3.x, and earlier, when using FS: or GS: segment override, uses an uninitialized variable as a segment base, which allows local 64-bit PV guests to obtain sensitive information (hypervisor stack content) via unspecified vectors related to stale data in a segment register.
0
Attacker Value
Unknown
CVE-2013-4355
Disclosure Date: October 01, 2013 (last updated October 05, 2023)
Xen 4.3.x and earlier does not properly handle certain errors, which allows local HVM guests to obtain hypervisor stack memory via a (1) port or (2) memory mapped I/O write or (3) other unspecified operations related to addresses without associated memory.
0
Attacker Value
Unknown
CVE-2013-4361
Disclosure Date: October 01, 2013 (last updated October 05, 2023)
The fbld instruction emulation in Xen 3.3.x through 4.3.x does not use the correct variable for the source effective address, which allows local HVM guests to obtain hypervisor stack information by reading the values used by the instruction.
0
Attacker Value
Unknown
CVE-2013-1442
Disclosure Date: September 30, 2013 (last updated October 05, 2023)
Xen 4.0 through 4.3.x, when using AVX or LWP capable CPUs, does not properly clear previous data from registers when using an XSAVE or XRSTOR to extend the state components of a saved or restored vCPU after touching other restored extended registers, which allows local guest OSes to obtain sensitive information by reading the registers.
0
Attacker Value
Unknown
CVE-2013-4329
Disclosure Date: September 12, 2013 (last updated October 05, 2023)
The xenlight library (libxl) in Xen 4.0.x through 4.2.x, when IOMMU is disabled, provides access to a busmastering-capable PCI passthrough device before the IOMMU setup is complete, which allows local HVM guest domains to gain privileges or cause a denial of service via a DMA instruction.
0
Attacker Value
Unknown
CVE-2013-2212
Disclosure Date: August 28, 2013 (last updated October 05, 2023)
The vmx_set_uc_mode function in Xen 3.3 through 4.3, when disabling caches, allows local HVM guests with access to memory mapped I/O regions to cause a denial of service (CPU consumption and possibly hypervisor or guest kernel panic) via a crafted GFN range.
0
Attacker Value
Unknown
CVE-2013-3495
Disclosure Date: August 28, 2013 (last updated October 05, 2023)
The Intel VT-d Interrupt Remapping engine in Xen 3.3.x through 4.3.x allows local guests to cause a denial of service (kernel panic) via a malformed Message Signaled Interrupt (MSI) from a PCI device that is bus mastering capable that triggers a System Error Reporting (SERR) Non-Maskable Interrupt (NMI).
0