Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-whw9-2rv6-633x

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

xen/arm: No memory limit for dom0less domUs The dom0less feature allows an administrator to create multiple unprivileged domains directly from Xen. Unfortunately, the memory limit from them is not set. This allow a domain to allocate memory beyond what an administrator originally configured.

xen/arm: No memory limit for dom0less domUs The dom0less feature allows an administrator to create multiple unprivileged domains directly from Xen. Unfortunately, the memory limit from them is not set. This allow a domain to allocate memory beyond what an administrator originally configured.

EPSS

Процентиль: 84%
0.02126
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 4.9
ubuntu
больше 4 лет назад

xen/arm: No memory limit for dom0less domUs The dom0less feature allows an administrator to create multiple unprivileged domains directly from Xen. Unfortunately, the memory limit from them is not set. This allow a domain to allocate memory beyond what an administrator originally configured.

CVSS3: 4.9
nvd
больше 4 лет назад

xen/arm: No memory limit for dom0less domUs The dom0less feature allows an administrator to create multiple unprivileged domains directly from Xen. Unfortunately, the memory limit from them is not set. This allow a domain to allocate memory beyond what an administrator originally configured.

CVSS3: 4.9
debian
больше 4 лет назад

xen/arm: No memory limit for dom0less domUs The dom0less feature allow ...

CVSS3: 4.9
fstec
больше 4 лет назад

Уязвимость функционала dom0less гипервизора Xen, позволяющая нарушителю вызвать отказ в обслуживании

suse-cvrf
больше 4 лет назад

Security update for xen

EPSS

Процентиль: 84%
0.02126
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-770