Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-1583

Опубликовано: 09 мая 2011
Источник: redhat
CVSS2: 6
EPSS Низкий

Описание

Multiple integer overflows in tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allow local users to cause a denial of service and possibly execute arbitrary code via a crafted paravirtualised guest kernel image that triggers (1) a buffer overflow during a decompression loop or (2) an out-of-bounds read in the loader involving unspecified length fields.

Отчет

This issue did not affect the versions of the Xen package as shipped with Red Hat Enterprise Linux 4 and 6. This has been addressed in Red Hat Enterprise Linux 5 via https://rhn.redhat.com/errata/RHSA-2011-0496.html.

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=696927xen: insufficiencies in pv kernel image validation

EPSS

Процентиль: 66%
0.00515
Низкий

6 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 14 лет назад

Multiple integer overflows in tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allow local users to cause a denial of service and possibly execute arbitrary code via a crafted paravirtualised guest kernel image that triggers (1) a buffer overflow during a decompression loop or (2) an out-of-bounds read in the loader involving unspecified length fields.

nvd
почти 14 лет назад

Multiple integer overflows in tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allow local users to cause a denial of service and possibly execute arbitrary code via a crafted paravirtualised guest kernel image that triggers (1) a buffer overflow during a decompression loop or (2) an out-of-bounds read in the loader involving unspecified length fields.

debian
почти 14 лет назад

Multiple integer overflows in tools/libxc/xc_dom_bzimageloader.c in Xe ...

github
около 3 лет назад

Multiple integer overflows in tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allow local users to cause a denial of service and possibly execute arbitrary code via a crafted paravirtualised guest kernel image that triggers (1) a buffer overflow during a decompression loop or (2) an out-of-bounds read in the loader involving unspecified length fields.

oracle-oval
около 14 лет назад

ELSA-2011-0496: xen security update (IMPORTANT)

EPSS

Процентиль: 66%
0.00515
Низкий

6 Medium

CVSS2