Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-28700

Опубликовано: 27 авг. 2021
Источник: debian
EPSS Низкий

Описание

xen/arm: No memory limit for dom0less domUs The dom0less feature allows an administrator to create multiple unprivileged domains directly from Xen. Unfortunately, the memory limit from them is not set. This allow a domain to allocate memory beyond what an administrator originally configured.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
xenfixed4.14.3-1package
xennot-affectedbusterpackage
xennot-affectedstretchpackage

Примечания

  • https://xenbits.xen.org/xsa/advisory-383.html

EPSS

Процентиль: 84%
0.02126
Низкий

Связанные уязвимости

CVSS3: 4.9
ubuntu
больше 4 лет назад

xen/arm: No memory limit for dom0less domUs The dom0less feature allows an administrator to create multiple unprivileged domains directly from Xen. Unfortunately, the memory limit from them is not set. This allow a domain to allocate memory beyond what an administrator originally configured.

CVSS3: 4.9
nvd
больше 4 лет назад

xen/arm: No memory limit for dom0less domUs The dom0less feature allows an administrator to create multiple unprivileged domains directly from Xen. Unfortunately, the memory limit from them is not set. This allow a domain to allocate memory beyond what an administrator originally configured.

CVSS3: 4.9
github
больше 3 лет назад

xen/arm: No memory limit for dom0less domUs The dom0less feature allows an administrator to create multiple unprivileged domains directly from Xen. Unfortunately, the memory limit from them is not set. This allow a domain to allocate memory beyond what an administrator originally configured.

CVSS3: 4.9
fstec
больше 4 лет назад

Уязвимость функционала dom0less гипервизора Xen, позволяющая нарушителю вызвать отказ в обслуживании

suse-cvrf
больше 4 лет назад

Security update for xen

EPSS

Процентиль: 84%
0.02126
Низкий