Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-28706

Опубликовано: 24 нояб. 2021
Источник: debian

Описание

guests may exceed their designated memory limit When a guest is permitted to have close to 16TiB of memory, it may be able to issue hypercalls to increase its memory allocation beyond the administrator established limit. This is a result of a calculation done with 32-bit precision, which may overflow. It would then only be the overflowed (and hence small) number which gets compared against the established upper bound.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
xenfixed4.14.3+32-g9de3671772-1package
xenend-of-lifebusterpackage
xenend-of-lifestretchpackage

Примечания

  • https://xenbits.xen.org/xsa/advisory-385.html

Связанные уязвимости

CVSS3: 8.6
ubuntu
около 4 лет назад

guests may exceed their designated memory limit When a guest is permitted to have close to 16TiB of memory, it may be able to issue hypercalls to increase its memory allocation beyond the administrator established limit. This is a result of a calculation done with 32-bit precision, which may overflow. It would then only be the overflowed (and hence small) number which gets compared against the established upper bound.

CVSS3: 8.6
nvd
около 4 лет назад

guests may exceed their designated memory limit When a guest is permitted to have close to 16TiB of memory, it may be able to issue hypercalls to increase its memory allocation beyond the administrator established limit. This is a result of a calculation done with 32-bit precision, which may overflow. It would then only be the overflowed (and hence small) number which gets compared against the established upper bound.

CVSS3: 8.6
github
больше 3 лет назад

guests may exceed their designated memory limit When a guest is permitted to have close to 16TiB of memory, it may be able to issue hypercalls to increase its memory allocation beyond the administrator established limit. This is a result of a calculation done with 32-bit precision, which may overflow. It would then only be the overflowed (and hence small) number which gets compared against the established upper bound.

suse-cvrf
около 4 лет назад

Security update for xen

suse-cvrf
около 4 лет назад

Security update for xen