Описание
Heap-based buffer overflow in the flask_security_label function in Xen 3.3, when compiled with the XSM:FLASK module, allows unprivileged domain users (domU) to execute arbitrary code via the flask_op hypercall.
Ссылки
- Patch
- Patch
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:xen:xen:3.3:*:*:*:*:*:*:*
cpe:2.3:a:xen:xen_flask_module:*:*:*:*:*:*:*:*
EPSS
Процентиль: 86%
0.02938
Низкий
6.8 Medium
CVSS2
Дефекты
CWE-119
Связанные уязвимости
ubuntu
почти 18 лет назад
Heap-based buffer overflow in the flask_security_label function in Xen 3.3, when compiled with the XSM:FLASK module, allows unprivileged domain users (domU) to execute arbitrary code via the flask_op hypercall.
debian
почти 18 лет назад
Heap-based buffer overflow in the flask_security_label function in Xen ...
github
больше 4 лет назад
Heap-based buffer overflow in the flask_security_label function in Xen 3.3, when compiled with the XSM:FLASK module, allows unprivileged domain users (domU) to execute arbitrary code via the flask_op hypercall.
EPSS
Процентиль: 86%
0.02938
Низкий
6.8 Medium
CVSS2
Дефекты
CWE-119