Vulnerability Name: | CVE-2007-5498 (CCN-42274) | ||||||||||||||||||||
Assigned: | 2007-10-17 | ||||||||||||||||||||
Published: | 2008-04-22 | ||||||||||||||||||||
Updated: | 2017-09-29 | ||||||||||||||||||||
Summary: | The Xen hypervisor block backend driver for Linux kernel 2.6.18, when running on a 64-bit host with a 32-bit paravirtualized guest, allows local privileged users in the guest OS to cause a denial of service (host OS crash) via a request that specifies a large number of blocks. | ||||||||||||||||||||
CVSS v3 Severity: | 2.8 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L)
| ||||||||||||||||||||
CVSS v2 Severity: | 4.9 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C) 3.7 Low (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
1.3 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:S/C:N/I:N/A:P/E:U/RL:OF/RC:C)
| ||||||||||||||||||||
Vulnerability Type: | CWE-399 | ||||||||||||||||||||
Vulnerability Consequences: | Denial of Service | ||||||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2007-5498 Source: CCN Type: Red Hat Bugzilla Bug 369531 CVE-2007-5498 missing sanity check in xen block backend driver Source: CCN Type: RHSA-2008-0233 Important: kernel security and bug fix update Source: SECUNIA Type: UNKNOWN 30116 Source: SECUNIA Type: UNKNOWN 32918 Source: CCN Type: The Linux Kernel Archives Web site The Linux Kernel Archives Source: REDHAT Type: UNKNOWN RHSA-2008:0233 Source: BID Type: UNKNOWN 29082 Source: CCN Type: BID-29082 Linux Kernel '/include/xen/blkif.h' 32-on-64 Support Denial Of Service Vulnerability Source: CCN Type: USN-679-1 Linux kernel vulnerabilities Source: UBUNTU Type: UNKNOWN USN-679-1 Source: MISC Type: Patch https://bugzilla.redhat.com/show_bug.cgi?id=369531 Source: XF Type: UNKNOWN linux-kernel-xen-hypervisor-dos(42274) Source: XF Type: UNKNOWN linux-kernel-xen-hypervisor-dos(42274) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:9452 | ||||||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Configuration RedHat 2: Configuration RedHat 3: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||
| |||||||||||||||||||||
BACK |